CVE-2026-49247 | Jellyfin up to 10.11.9 /ClientLog/Document path traversal

SecurityVulns

A vulnerability classified as critical was found in Jellyfin up to 10.11.9. This impacts an unknown function of the file /ClientLog/Document. Executing a manipulation can lead to path traversal.

This vulnerability is tracked as CVE-2026-49247. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More