Vulnerabilities > Bigbluebutton > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-30 CVE-2023-43797 Cross-site Scripting vulnerability in Bigbluebutton
BigBlueButton is an open-source virtual classroom.
network
low complexity
bigbluebutton CWE-79
5.4
2023-10-30 CVE-2023-43798 Server-Side Request Forgery (SSRF) vulnerability in Bigbluebutton
BigBlueButton is an open-source virtual classroom.
network
low complexity
bigbluebutton CWE-918
5.4
2023-10-30 CVE-2023-42804 Path Traversal vulnerability in Bigbluebutton
BigBlueButton is an open-source virtual classroom.
network
low complexity
bigbluebutton CWE-22
5.3
2023-06-26 CVE-2023-33176 Server-Side Request Forgery (SSRF) vulnerability in Bigbluebutton
BigBlueButton is an open source virtual classroom designed to help teachers teach and learners learn.
network
low complexity
bigbluebutton CWE-918
6.5
2022-12-16 CVE-2022-23490 Incorrect Authorization vulnerability in Bigbluebutton
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-863
4.3
2022-12-16 CVE-2022-41964 Information Exposure vulnerability in Bigbluebutton 2.4
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-200
5.7
2022-12-16 CVE-2022-41961 Origin Validation Error vulnerability in Bigbluebutton 2.4
BigBlueButton is an open source web conferencing system.
network
low complexity
bigbluebutton CWE-346
4.3
2022-06-27 CVE-2022-31039 Incorrect Authorization vulnerability in Bigbluebutton Greenlight
Greenlight is a simple front-end interface for your BigBlueButton server.
network
low complexity
bigbluebutton CWE-863
5.0
2022-06-27 CVE-2022-31065 Cross-site Scripting vulnerability in Bigbluebutton
BigBlueButton is an open source web conferencing system.
4.3
2022-06-02 CVE-2022-26497 Cross-site Scripting vulnerability in Bigbluebutton Greenlight 2.11.1
BigBlueButton Greenlight 2.11.1 allows XSS.
network
low complexity
bigbluebutton CWE-79
5.4