Critical severity9.8NVD Advisory· Published Jun 28, 2023· Updated Jun 17, 2026
CVE-2021-25827
CVE-2021-25827
Description
Emby Server < 4.7.12.0 is vulnerable to a login bypass attack by setting the X-Forwarded-For header to a local IP-address.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Emby Server/Emby Serverdescription
- Range: <4.7.12.0
Patches
Vulnerability mechanics
References
3- github.com/MediaBrowser/Emby/issues/3784nvdExploitIssue TrackingThird Party Advisory
- emby.media/community/index.phpnvdProduct
- github.com/EmbySupport/security/security/advisories/GHSA-fffj-6fr6-3fgfnvdNot Applicable
News mentions
0No linked articles in our index yet.