Description
Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-38809 | Greenlight is an end-user interface for BigBlueButton servers. Versions prior to 2.13.0 have an open redirect vulnerability in the Login page due to unchecked the value of the `return_to` cookie. Versions 2.13.0 contains a patch for the issue. |
References
History
Thu, 24 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Bigbluebutton
Bigbluebutton greenlight |
|
| CPEs | cpe:2.3:a:bigbluebutton:greenlight:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Bigbluebutton
Bigbluebutton greenlight |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-29T20:11:18.365Z
Reserved: 2022-07-15T23:52:24.306Z
Link: CVE-2022-36029
Updated: 2024-08-03T09:52:00.349Z
Status : Analyzed
Published: 2024-04-25T21:15:46.523
Modified: 2025-04-24T13:46:39.490
Link: CVE-2022-36029
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD