Or switch to Jellyfin y’know

The flaw’s CVSS score is the highest possible, and tells us that it can be exploited remotely over the internet, without user interaction or attackers having to authenticate first.

  • BountifulEggnog [she/her]@hexbear.netOP
    link
    fedilink
    English
    arrow-up
    7
    ·
    2 months ago

    It looks like it yes, so anyone using the remote feature would be at risk. If its firewalled off and only accessible locally I can’t imagine how an attacker could do anything.

    • peeonyou [he/him]@hexbear.net
      link
      fedilink
      English
      arrow-up
      5
      ·
      edit-2
      2 months ago

      ya i know it phones home to plex and thought maybe this exploit could take advantage of that even if you hadn’t enabled “remote” access, but that’s probably unlikely