Mubelotix@jlai.lu to Selfhosted@lemmy.worldEnglish · 14 days agoJellyfin critical security update - This is not a jokegithub.comexternal-linkmessage-square261linkfedilinkarrow-up1710arrow-down17 cross-posted to: jellyfin@lemmy.mljellyfin@lemmy.ml
arrow-up1703arrow-down1external-linkJellyfin critical security update - This is not a jokegithub.comMubelotix@jlai.lu to Selfhosted@lemmy.worldEnglish · 14 days agomessage-square261linkfedilink cross-posted to: jellyfin@lemmy.mljellyfin@lemmy.ml
minus-squaresomehacker@lemmy.worldlinkfedilinkEnglisharrow-up12·14 days agoNo need to shut it down if it’s not exposed to the internet. Tailnet/VPN is fine. If it’s a supply chain compromise shutting it down wouldn’t matter. The damage is already done.
minus-squarePossibly linux@lemmy.ziplinkfedilinkEnglisharrow-up1·13 days agoI don’t believe it a supply chain compromise
minus-squaresomehacker@lemmy.worldlinkfedilinkEnglisharrow-up1·13 days agoSame. I was pointing out that if it was related to Axios then it’s already too late.
No need to shut it down if it’s not exposed to the internet. Tailnet/VPN is fine.
If it’s a supply chain compromise shutting it down wouldn’t matter. The damage is already done.
I don’t believe it a supply chain compromise
Same. I was pointing out that if it was related to Axios then it’s already too late.