CVE-2026-48793 - Jellyfin: Potential FFmpeg argument injection via unescaped subtitle file path
CVE ID :CVE-2026-48793 Published : June 24, 2026, 6:22 p.m. | 4 hours, 48 minutes ago Description :Jellyfin is an open source self hosted media server. Prior to 10.11.10, a potential FFmpeg argument injection vulnerability exists in the subtitle conversion code path....