AI description
CVE-2025-34158 is an unspecified security vulnerability affecting Plex Media Server (PMS) versions 1.41.7.x through 1.42.0.x. The vulnerability was reported through Plex's bug bounty program and has been addressed in version 1.42.1. While the technical details of the vulnerability have not been publicly disclosed, Plex has stated that it could potentially compromise system integrity, confidentiality, or availability. Users of the affected versions are strongly encouraged to update to version 1.42.1 as soon as possible.
- Description
- Plex Media Server (PMS) versions 1.41.7.x through 1.42.0.x are affected by an unspecified security vulnerability reported via Plex’s bug bounty program. While technical details have not been publicly disclosed, the issue was acknowledged by the vendor and resolved in version 1.42.1. The vulnerability may pose a risk to system integrity, confidentiality, or availability, prompting a strong recommendation for all users to upgrade immediately.
- Source
- disclosure@vulncheck.com
- NVD status
- Awaiting Analysis
CVSS 4.0
- Type
- Secondary
- Base score
- 10
- Impact score
- -
- Exploitability score
- -
- Vector string
- CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
- Severity
- CRITICAL
- disclosure@vulncheck.com
- CWE-20
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
7
🚨Alert🚨 CVE-2025-34158 (CVSS 10) : An Unspecified Security Vulnerability in Plex Media Server (PMS) Has Been Reported Via Plex’s Bug Bounty Program. 📊7.3M Services are found on the https://t.co/ysWb28BTvF yearly. 🔗Hunter Link:https://t.co/L4J5cJGUUJ 👇Query HUNTE
@HunterMapping
22 Aug 2025
2352 Impressions
10 Retweets
32 Likes
10 Bookmarks
0 Replies
0 Quotes
CVE-2025-34158 Plex Media Server (PMS) versions 1.41.7.x through 1.42.0.x are affected by an unspecified security vulnerability reported via Plex’s bug bounty program. While technic… https://t.co/GgQSoCsBSb
@CVEnew
21 Aug 2025
337 Impressions
1 Retweet
1 Like
0 Bookmarks
2 Replies
0 Quotes
[CVE-2025-34158: CRITICAL] Security alert: Plex Media Server versions 1.41.7.x-1.42.0.x had a critical vulnerability, now fixed in 1.42.1. Users urged to update to protect system from potential risks.#cve,CVE-2025-34158,#cybersecurity https://t.co/ZCPyg51jU9 https://t.co/Qv23FDSm
@CveFindCom
21 Aug 2025
63 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes