PT-2025-50221 · Emby · Emby Server

Published

2025-12-06

·

Updated

2025-12-11

·

CVE-2025-64113

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Emby Server versions prior to 4.9.1.81 Emby Server versions 4.9.1.81 through 4.9.1.90 Emby Server version 4.9.2.7
Description Emby Server, a user-installable home media server, is affected by an issue allowing an attacker to gain full administrative access to the server. No specific preconditions beyond network access are required for exploitation. Approximately 993.8k servers are estimated to be exposed. The issue affects Emby Server administration, not the underlying operating system.
Recommendations Update Emby Server to version 4.9.1.81 or later. Update Emby Server to version 4.9.1.90 or later. Update Emby Server to version 4.9.2.7 or later.

Exploit

Fix

Weakness Enumeration

Related Identifiers

BDU:2026-05171
CVE-2025-64113
GHSA-95FV-5GFJ-2R84

Affected Products

Emby Server