Generated remediation guidance and an executive summary. No account required.
Greenlight is a simple front-end interface for your BigBlueButton server. In affected versions an attacker can view any room's settings even though they are not authorized to do so. Only the room owner and administrator should be able to view a room's settings. This issue has been patched in release version 2.12.6.
Cite this page
CVE-2022-31039. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2022-31039
Use CWE-269, Bigbluebutton vendor hub and Greenlight product page to widen CVE-2022-31039 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-36029, CVE-2022-36028 and CVE-2020-26163 for nearby disclosures in the same product family.