Skip to main content
CyberConfirmedHighDeveloping
9.3

Unpatched Kaltura mwEmbed vulnerabilities enable unauthenticated RCE and file exposure

Critical vulnerabilities in the Kaltura mwEmbed component allow unauthenticated remote code execution and unauthorized server file access via unsafe deserialization. No vendor patch is currently available, leaving enterprise deployments exposed to potential exploitation.

The Hacker Newsabout 8 hours agoengCredibility 61%View source

Score Breakdown

Mosaic Score9.3
Confidence0.9
Significance0.8
Source credibility0.6
Source

Related signals

8 found