Improper Input Validation in Pexip Infinity Conferencing Nodes
CVE-2026-103110
9.8CRITICAL
What is CVE-2026-103110?
Pexip Infinity versions prior to 38.2, as well as 39.0, 39.1, and 40.0, are compromised by a vulnerability that stems from improper input validation. This flaw potentially enables a remote attacker to execute arbitrary code on a Pexip Infinity Conferencing Node with unprivileged access. Such a security lapse can lead to unauthorized control over the conferencing system, heightening the risk of data breaches and system manipulation.
Affected Version(s)
Infinity 0 < 38.2.0
Infinity 39.0.0
Infinity 39.1.0
