OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-103110

CRITICAL · CVSS 9.8 EPSS 0.61%

Source: NVD + CISA KEV + EPSS · Published 2026-09-30 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

Pexip Infinity versions prior to 38.2, as well as 39.0, 39.1, and 40.0, are vulnerable due to improper input validation, enabling remote attackers to execute arbitrary code as an unprivileged user on the conferencing node. This critical vulnerability poses a significant risk to the integrity and confidentiality of communications managed by affected systems. Organizations utilizing Pexip Infinity should prioritize immediate patching to mitigate potential exploitation.

CVE
CVE-2026-103110
Severity
CRITICAL
CVSS
9.8
EPSS
0.61%

Original NVD Description

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation that allows a remote attacker to execute code remotely as an unprivileged user on a Pexip Infinity Conferencing Node.

Related CVEs

Other vulnerabilities affecting the same vendor(s)