CVE-2026-32275
EUVD-2026-1720830.03.2026, 20:16
Tautulli is a Python based monitoring and tracking tool for Plex Media Server. From version 1.3.10 to before version 2.17.0, an unsanitized JSONP callback parameter allows cross-origin script injection and API key theft. This issue has been patched in version 2.17.0.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| tautulli | tautulli | 1.3.10 ≤ 𝑥 < 2.17.0 |
𝑥
= Vulnerable software versions