CVE-2026-96656 | Plex Media Server up to 1.42.1 Transcoder TranscoderH264Options code injection

SecurityVulns

A vulnerability, which was classified as problematic, has been found in Plex Media Server 0.9.9.2/0.9.9.2.374/0.9.9.3/0.9.9.10/1.42.1. This issue affects some unknown processing of the component Transcoder. This manipulation of the argument TranscoderH264Options causes code injection.

The identification of this vulnerability is CVE-2026-96656. It is possible to initiate the attack remotely. There is no exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More