CVE-2023-27161 Information

Description

Jellyfin up to v10.7.7 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /Repositories. This vulnerability allows attackers to access network resources and sensitive information via a crafted POST request.

Reference

https://github.com/jellyfin/jellyfin https://notes.sjtu.edu.cn/s/yJ9lPk09a http://jellyfin.com

Share on: