My Lemmy Oracle
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Mubelotix@jlai.lu to Selfhosted@lemmy.worldEnglish · 3 days ago

Jellyfin critical security update - This is not a joke

github.com

external-link
message-square
248
fedilink
  • cross-posted to:
  • [email protected]
  • [email protected]
  • [email protected]
692
external-link

Jellyfin critical security update - This is not a joke

github.com

Mubelotix@jlai.lu to Selfhosted@lemmy.worldEnglish · 3 days ago
message-square
248
fedilink
  • cross-posted to:
  • [email protected]
  • [email protected]
  • [email protected]
Release 10.11.7 · jellyfin/jellyfin
github.com
external-link
🚀 Jellyfin Server 10.11.7 We are pleased to announce the latest stable release of Jellyfin, version 10.11.7! This minor release brings several bugfixes to improve your Jellyfin experience. As alway...
  • neclimdul@lemmy.world
    link
    fedilink
    English
    arrow-up
    5
    ·
    1 day ago

    Definitely.

    But I think more than copium it’s them understanding their users. It’s advice for people that will figure out how to run Jellyfin but won’t stay on top of updates, setup a waf, use a firewall/reverseproxy to limit access, etc. There are surely a lot of those that just one clicked an installer etc and for them it’s good advice.

    • kieron115@startrek.website
      link
      fedilink
      English
      arrow-up
      1
      ·
      1 day ago

      that’s fair, does it not have any kind of encryption by default?

      • ℍ𝕂-𝟞𝟝@sopuli.xyz
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 day ago

        Standard TLS, I think, but what else would you need?

        • kieron115@startrek.website
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          1 day ago

          None really, just wondering what the issue with opening it up is if it has TLS? In 10+ years I’ve never had my Plex server compromised and it just uses TLS. I do change the default port but that’s it.

          • neclimdul@lemmy.world
            link
            fedilink
            English
            arrow-up
            2
            ·
            1 day ago

            Plex logins go through their login server so you’ll also have login throttling and probably other bot protections.

            • kieron115@startrek.website
              link
              fedilink
              English
              arrow-up
              2
              ·
              1 day ago

              They also do some SSL shenanigans to get every user a unique, valid public certificate created during setup. https://words.filippo.io/how-plex-is-doing-https-for-all-its-users/

Selfhosted@lemmy.world

selfhosted@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don’t control.

Rules:

  1. Be civil: we’re here to support and learn from one another. Insults won’t be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it’s not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don’t duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

  7. No low-effort posts. This is subjective and will largely be determined by the community member reports.

Resources:

  • selfh.st Newsletter and index of selfhosted software and apps
  • awesome-selfhosted software
  • awesome-sysadmin resources
  • Self-Hosted Podcast from Jupiter Broadcasting

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 769 users / day
  • 3.48K users / week
  • 8.21K users / month
  • 16.5K users / 6 months
  • 1 local subscriber
  • 58.1K subscribers
  • 5.74K Posts
  • 134K Comments
  • Modlog
  • mods:
  • Ruud@lemmy.world
  • Loki@lemmy.world
  • CannaVet@lemmy.world
  • devve@lemmy.world
  • HybridSarcasm@lemmy.world
  • HybridSarcasm@lemmy.hybridsarcasm.xyz
  • BE: 0.19.5
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org