SecAlerts
jellyfin logo

jellyfin

Security Risk Profile

56
/100
medium

Security Risk Score

Comprehensive risk assessment based on 25 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from March 23, 2021 to present

25
Total CVEs
15
Critical+High
1
Exploited
6
Unpatched

Threat Assessment

Avg CVSS
7.4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
6
Critical/High
Risk Level
56/100
medium
⚠️ 1 Active Exploits

Severity Distribution

Critical
4
High
11
Medium
7
Low
1

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
2

Age Distribution

Common Weaknesses (CWE)

1
XSS
7
2
Path Traversal
5
3
SSRF
3
4
Input Validation
2
5
Infoleak
1

Most Affected Products

1. Jellyfin Jellyfin31
2. npm/jellyfin-web2
3. FFmpeg Project libavcodec1
4. FFmpeg Project MagicYUV decoder1
5. FFmpeg Project FlashSV decoder1

Recent Vulnerabilities

See more →

Monitor jellyfin in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.