CVE-2025-66378

Pexip Infinity 38.0 and 38.1 before 39.0 has insufficient access control in the RTMP implementation, allowing an attacker to disconnect RTMP streams traversing a Proxy Node.

medium 5.9 CVSS 3.1
Published: Dec 25, 2025
Modified: Jan 5, 2026
Vendor: Pexip
Product: Pexip Infinity

Description

Pexip Infinity 38.0 and 38.1 before 39.0 has insufficient access control in the RTMP implementation, allowing an attacker to disconnect RTMP streams traversing a Proxy Node.

References

Related CVEs