CVE-2025-66379: Pexip Infinity

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Pexip Infinity before 39.0 has Improper Input Validation in the media implementation, allowing a remote attacker to trigger a software abort via a crafted media stream, resulting in a denial of service.

Affected products

  • Pexip Pexip Infinity: before 39.0 (fixed in 39.0)

Published 2025-12-25. Last modified 2026-10-07.