Emby
9 known vulnerabilities
Top Products
Emby Server is a user-installable home media server. Versions below 4.9.1.81 allow an attacker to gain full administrati
Emby Server is a personal media server. Prior to version 4.8.1.0 and prior to Beta version 4.9.0.0-beta, a malicious use
A vulnerability was found in Media Browser Emby Server 4.7.13.0 and classified as problematic. This issue affects some u
Emby Server versions < 4.6.0.50 is vulnerable to Cross Site Scripting (XSS) vulnerability via a crafted GET request to /
Emby Server < 4.7.12.0 is vulnerable to a login bypass attack by setting the X-Forwarded-For header to a local IP-addres
Emby Server is a user-installable home media server which stores and organizes a user's media files of virtually any for
In Emby Server 4.6.7.0, the playlist name field is vulnerable to XSS stored where it is possible to steal the administra
Emby Server is a personal media server with apps on many devices. In Emby Server on Windows there is a set of arbitrary
Emby Server before 4.5.0 allows SSRF via the Items/RemoteSearch/Image ImageURL parameter.
Frequently Asked Questions
How many CVEs affect Emby?
Emby has 9 CVE records in our database, including 5 critical and 1 high severity vulnerabilities.
What are the most severe Emby vulnerabilities?
Emby has 5 critical severity (CVSS 9.0+) and 1 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Emby vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Emby products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Emby Vulnerabilities
CyberStrike scans your infrastructure for Emby vulnerabilities and provides real-time remediation guidance.
Get Started