CVE-2020-11878: Jitsi Meet

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

The Jitsi Meet (aka docker-jitsi-meet) stack on Docker before stable-4384-1 uses default passwords (such as passw0rd) for system accounts.

Affected products

  • Jitsi Meet: before stable-4384-1 (fixed in stable-4384-1)

Published 2020-04-17. Last modified 2026-06-17.