Vulnerabilities > Bigbluebutton > Greenlight > 2.7.6

DATE CVE VULNERABILITY TITLE RISK
2022-06-27 CVE-2022-31039 Incorrect Authorization vulnerability in Bigbluebutton Greenlight
Greenlight is a simple front-end interface for your BigBlueButton server.
network
low complexity
bigbluebutton CWE-863
5.0
2020-10-22 CVE-2020-27642 Cross-site Scripting vulnerability in Bigbluebutton Greenlight 2.7.6
A cross-site scripting (XSS) vulnerability exists in the 'merge account' functionality in admins.js in BigBlueButton Greenlight 2.7.6.
4.3