pexip

9 records · 0 with a public proof-of-concept

Disclosed vulnerabilities where the NVD names pexip as an affected vendor, highest CVSS first.

  1. CRITICAL 9.8CVE-2026-103110

    Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation that allows a remote attacker to execute code remotely as an unprivileged user on a Pexip Infinity Conferencing Node.

    pexip infinity

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 8.8CVE-2026-103105

    Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a product-internal API which allows an attacker with local access to a node within a Pexip Infinity installation to execute arbitrary code as an unprivileged user o…

    pexip infinity

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 8.6CVE-2026-103102

    Pexip Infinity before 41.0 is affected by improper input validation in the signaling implementation which allows a remote attacker to trigger a software abort resulting in a denial of service. Exploitation of this issue requires accessing a gateway call from a…

    pexip infinity

    AI risk analysis on Exploit-DB.ai →

  4. HIGH 8.6CVE-2026-103101

    Pexip Infinity 30.0 through 40.x before 41.0 is affected by improper input validation in the web server that allows a malicious attacker to render a Pexip Infinity node inaccessible.

    pexip infinity

    AI risk analysis on Exploit-DB.ai →

  5. HIGH 7.8CVE-2026-103106

    Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation within an internal Pexip Infinity service that allows an attacker with local access to escalate privileges to root. Exploitation requires an attacker to be able to …

    pexip infinity

    AI risk analysis on Exploit-DB.ai →

  6. HIGH 7.7CVE-2026-103109

    Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to trigger memory corruption or a software abort resulting in a denial of service. A crafted media stream m…

    pexip infinity

    AI risk analysis on Exploit-DB.ai →

  7. HIGH 7.5CVE-2026-103108

    Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to trigger a software abort resulting in a denial of service

    pexip infinity

    AI risk analysis on Exploit-DB.ai →

  8. HIGH 7.5CVE-2026-103104

    Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation which allows a remote attacker to trigger a software abort resulting in a denial of service.

    pexip infinity

    AI risk analysis on Exploit-DB.ai →

  9. HIGH 7.5CVE-2026-103100

    Pexip Infinity before 40.1 is affected by improper input validation in the signaling implementation that allows a malicious attacker to trigger a software abort resulting in a denial of service.

    pexip infinity

    AI risk analysis on Exploit-DB.ai →