Vulnerabilities > Jellyfin > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-09-02 | CVE-2024-43801 | Unspecified vulnerability in Jellyfin Jellyfin is an open source self hosted media server. | 5.4 |
2023-04-24 | CVE-2023-30627 | Unspecified vulnerability in Jellyfin jellyfin-web is the web client for Jellyfin, a free-software media system. | 5.4 |
2023-02-03 | CVE-2023-23635 | Cross-site Scripting vulnerability in Jellyfin In Jellyfin 10.8.x through 10.8.3, the name of a collection is vulnerable to stored XSS. | 5.4 |
2023-02-03 | CVE-2023-23636 | Cross-site Scripting vulnerability in Jellyfin In Jellyfin 10.8.x through 10.8.3, the name of a playlist is vulnerable to stored XSS. | 5.4 |
2022-08-19 | CVE-2022-35910 | Cross-site Scripting vulnerability in Jellyfin In Jellyfin before 10.8, stored XSS allows theft of an admin access token. | 5.4 |
2021-05-06 | CVE-2021-29490 | Unspecified vulnerability in Jellyfin Jellyfin is a free software media system that provides media from a dedicated server to end-user devices via multiple apps. | 5.8 |
2021-03-23 | CVE-2021-21402 | Unspecified vulnerability in Jellyfin Jellyfin is a Free Software Media System. | 6.5 |