📦 Emby

by Emby

🔍 What is Emby?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-64113

CRITICAL CVSS 9.8 Dec 9, 2025

CVE-2025-64113 is an authentication bypass vulnerability in Emby Server that allows attackers to gain full administrative access to the media server. Any Emby Server instance running versions below 4....

CVE-2025-64325

CRITICAL CVSS 9.0 Nov 18, 2025

This vulnerability allows an attacker to inject malicious content into the Emby Server admin dashboard by manipulating the X-Emby-Client header during authentication. The injected content appears unsa...

CVE-2021-25827

CRITICAL CVSS 9.8 Jun 28, 2023

CVE-2021-25827 is an authentication bypass vulnerability in Emby Server that allows attackers to bypass login requirements by setting the X-Forwarded-For HTTP header to a local IP address. This affect...

CVE-2020-26948

CRITICAL CVSS 9.8 Oct 10, 2020

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in Emby Server that allows attackers to make unauthorized requests from the server to internal or external systems. Attackers can ...