CVE-2022-35909
19.08.2022, 13:15
In Jellyfin before 10.8, the /users endpoint has incorrect access control for admin functionality.Enginsight
| Vendor | Product | Version |
|---|---|---|
| jellyfin | jellyfin | 𝑥 < 10.8 |
𝑥
= Vulnerable software versions
References
In Jellyfin before 10.8, the /users endpoint has incorrect access control for admin functionality.Enginsight
| Vendor | Product | Version |
|---|---|---|
| jellyfin | jellyfin | 𝑥 < 10.8 |