Plex is urging users to update Plex Media Server to version 1.43.3 or later and Plex Desktop to version 1.115.0 after fixing several security issues that have not yet been publicly detailed. The notice is particularly relevant to people running their own Plex servers, including installations hosted on NAS hardware.

The company has requested CVE identifiers for the vulnerabilities and says it will share more information once those identifiers are published. Plex has not disclosed the flaws’ technical nature, severity, exploit paths, or whether they have been exploited, but it has advised users to install the updates as soon as possible.

Plex Media Server is commonly used to make personal media libraries on PCs, servers, and network-attached storage systems available across TVs and other devices. Systems exposed beyond a local network may warrant particular attention, although Plex has not specified an attack scenario for the newly patched issues.

NAS owners may not immediately see the fixed server release in their vendor’s package manager. Plex recommends downloading the appropriate package and installing it manually when the update is unavailable through the usual NAS software channel. Windows and macOS users with automatic updates enabled should also verify that their server has actually moved to version 1.43.3 or newer.

The advisory is separate from CVE-2025-34158, a flaw Plex addressed in August 2025. That vulnerability carried a CVSS score of 8.5 and could have allowed an authenticated low-privilege user to access server-owner information, including an administrative token. No information currently links that issue to this latest group of fixes; further details depend on the publication of the new CVE records.

VIAxda-developers.com
SOURCEforums.plex.tv
Previous articleDisney+ Disables Google Cast in Germany and the Netherlands After Patent Injunction
Next articleInsta360 X6 Can Build 360 Video Edits While Charging With On-Device AI