Plex has issued an official note and sent a communication via email to its users urging immediate updating from the installations of Plex Media Server and Plex Desktop client. The measure was necessary to fix a series of security vulnerabilities found in previous versions of the software.
Currently, the company has not yet disclosed the technical specifications relating to the severity of the bugs, their exact number or the attack vectors that can be used for a possible compromise. The problem is of direct concern all versions of Plex Media Server equal to or earlier than v1.43.2 and previous releases of Plex Desktop.
The fixes have been integrated into Plex Media Server 1.43.3 and Plex Desktop 1.115.0. Although the update for the server was initially distributed on August 12 (followed by the desktop client on August 13), the company only began to publicly highlight the security relevance in early September, but did not provide reasons for the length of time between the release of the patches and the formal solicitation.
In the company’s support forum, employee B. Dettmer reiterated the need for proceed with the migration to the latest builds as soon as possible. In the communication forwarded to users via email, the company stated:
“We recently released Plex Media Server 1.43.3 and Plex Desktop 1.115.0 to address a number of security issues. We recommend all server owners and desktop users update to the latest version as soon as possible.”
Regarding code defect tracking, the company added: “CVEs have been requested and we will respond to this thread with more details once published. If you are running Plex Media Server on a NAS device, the updated version may not yet be available in the respective package manager, but you can install the package manually.”
The platforms involved include major desktop and server operating systems – Windows, macOS, Linux, FreeBSD – as well as NAS systems from major manufacturers. Since software packages on NAS from brands such as QNAP, Synology, TerraMaster, Western Digital and Netgear may require longer approval times within their internal app stores, we The manual update procedure is recommended after checking the hardware architecture of the device.

