Plex has notified some of its users on Thursday to urgently update their media servers due to a recently patched security vulnerability.

The company has yet to assign a CVE-ID to track the flaw and didn’t provide additional details regarding the patch, only saying that it impacts Plex Media Server versions 1.41.7.x to 1.42.0.x.

    • katy ✨
      link
      fedilink
      English
      74 months ago

      i’m ootl; how was plex able to ban them? isn’t hetzner just a vps provider? (not questioning you; just curious)

          • Derpgon
            link
            fedilink
            English
            74 months ago

            That’s what you get for using anything that doesn’t work fully offline. Seriously people still defending Plex and not seeing that it will bite them back sooner or later are delusional.

            Given that hardware doesn’t die, my Jellyfin will probably work until the heat death of the universe.

        • Kogasa
          link
          fedilink
          English
          04 months ago

          I’ve been using a reverse proxy on a Hetzner VPS pointing at my home plex server for years without issue. Maybe this only applies to people running the actual Plex software on a Hetzner VPS?

          • @Darkassassin07@lemmy.ca
            link
            fedilink
            English
            1
            edit-2
            4 months ago

            Yeah, your home server is still able to reach plex.tv so there’s no problem there.

            It’s people actually hosting there that got screwed over.

    • @rumba@lemmy.zip
      link
      fedilink
      English
      44 months ago

      https://torrentfreak.com/plex-will-block-media-servers-at-prevalent-hosting-company-230915/

      There’s the story but there’s not much tea.

      I’m guessing there were just enough complaints and Hetzner refused to take anything down.

      Really bizarre to license people self-hosting software and then refuse them from hosting it in certain places over what content they choose to put up.

      I wonder if they’ll just roll through all the VPS now.