CVE Monitor
CVE-2025-34820
N/A
02 Jan 2026
CVE-2025-34819
N/A
02 Jan 2026
CVE-2025-34818
N/A
02 Jan 2026
CVE-2025-34817
N/A
02 Jan 2026
CVE-2025-34816
N/A
02 Jan 2026
CVE-2025-34815
N/A
02 Jan 2026
CVE-2025-34814
N/A
02 Jan 2026
CVE-2025-34813
N/A
02 Jan 2026
CVE-2025-34812
N/A
02 Jan 2026
CVE-2025-34811
N/A
02 Jan 2026
CVE-2025-34810
N/A
02 Jan 2026
CVE-2025-34809
N/A
02 Jan 2026
CVE-2025-34808
N/A
02 Jan 2026
CVE-2025-34807
N/A
02 Jan 2026
CVE-2025-34806
N/A
02 Jan 2026
CVE-2025-34805
N/A
02 Jan 2026
CVE-2025-34804
N/A
02 Jan 2026
CVE-2025-34803
N/A
02 Jan 2026
CVE-2025-34802
N/A
02 Jan 2026
CVE-2025-34801
N/A
02 Jan 2026
CVE-2025-34800
N/A
02 Jan 2026
CVE-2025-34799
N/A
02 Jan 2026
CVE-2025-69416
MEDIUM
02 Jan 2026
In the plex.tv backend for Plex Media Server (PMS) through 2025-12-31, a non-server device token can retrieve other tokens (intended for unrelated access) via clients.plex.tv/devices.xml.
CVE-2025-69415
HIGH
02 Jan 2026
In Plex Media Server (PMS) through 1.42.2.10156, ability to access /myplex/account with a device token is not properly aligned with whether the device is currently associated with an account.
CVE-2025-34798
N/A
02 Jan 2026