CVE-2025-66378: Pexip Infinity
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Pexip Infinity 38.0 and 38.1 before 39.0 has insufficient access control in the RTMP implementation, allowing an attacker to disconnect RTMP streams traversing a Proxy Node.
Affected products
- Pexip Pexip Infinity: from 38.0, before 39.0 (fixed in 39.0)
Published 2025-12-25. Last modified 2026-10-07.