Comment on Plex’s crackdown on free remote streaming access starts this week - Ars Technica

<- View Parent
tyler@programming.dev ⁨9⁩ ⁨hours⁩ ago

Aside from most of those being “potential issues”, which weren’t proven, the rest are GETs of things that do not need to be secret, things like album art and list of installed plugins. Besides the one plugin issue, which was an actual security issue, which was fixed over a year and a half ago. github.com/jellyfin/jellyfin/pull/11436

Contrast that with Plex which has numerous high severity CVEs that include things like remote code execution, directory traversal, and more.

source
Sort:hotnewtop