CVE-2026-103110
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation that allows a remote attacker to execute code remotely as an unprivileged user on a Pexip Infinity Conferencing Node.
- Published Sep 30, 2026
- CVSS 9.8 critical
- 0.6% chance of exploitation in the next 30 days (EPSS)
- A fix is available