Login
Register
Login
Register
Login
Username/Email:
Password:
Or login with a social network below
Forum
Website
GitHub
Status
Translation
Features
Team
Rules
Help
Feeds
User Links
Login
Register
Login
Register
Login
Username/Email:
Password:
Or login with a social network below
Useful Links
Forum
Website
GitHub
Status
Translation
Features
Team
Rules
Help
Feeds
Jellyfin Forum
Support
Troubleshooting
SOLVED:
data breach
0 Vote(s) - 0 Average
SOLVED: data breach
You can view data without logging in
wen o
Offline
Junior Member
Posts:
2
Threads:
1
Joined:
2024 Jan
Reputation:
0
#1
2024-01-25, 01:43 PM
No login required to access
/Items/c468674a982993e9d4b707d3584e6a79/Images/Primary
Content, this is a serious data breach problem
Go to solution
niels
Offline
Core Team
Posts:
209
Threads:
3
Joined:
2023 Jun
Reputation:
8
Country:
#2
2024-01-25, 01:55 PM
This is known behavior and not a data breach
https://github.com/jellyfin/jellyfin/issues/5415
wen o
Offline
Junior Member
Posts:
2
Threads:
1
Joined:
2024 Jan
Reputation:
0
#3
2024-01-25, 03:03 PM
Is there any way to solve this problem?
tmsrxzar
Offline
Senior Member
Posts:
755
Threads:
6
Joined:
2023 Nov
Reputation:
20
#4
2024-01-25, 03:18 PM
(2024-01-25, 03:03 PM)
wen o Wrote:
Is there any way to solve this problem?
disable jellyfin-web
disable access to jellyfin-web
the expectation is that security will be handled external to jellyfin, jellyfin itself is not security hardened (at all)
niels
Offline
Core Team
Posts:
209
Threads:
3
Joined:
2023 Jun
Reputation:
8
Country:
#5
2024-01-25, 03:28 PM
Disabling jellyfin-web has exactly zero effect since this is entirely within the server
«
Next Oldest
|
Next Newest
»
Users browsing this thread: 1 Guest(s)
View a Printable Version
Subscribe to this thread
Forum Jump:
Private Messages
User Control Panel
Who's Online
Search
Forum Home
Announcements
-- Forum Announcements
-- Project Announcements
Support
-- Guides, Walkthroughs & Tutorials
-- Themes & Styles
-- General Questions
-- Troubleshooting
---- Networking & Access
---- Media Scanning & Identification
Development
-- Feature Requests
-- Server Development
-- Web Development
-- Plugin Development
-- Packaging
-- Client Development
---- Android Development
---- Android TV Development
---- Roku Development
---- Kodi Development
---- iOS and Apple TV Development
---- Smart TV Development
Off Topic
-- General Discussion
-- Self-hosting & Homelabs
-- Media
Linear Mode
Threaded Mode