Filtered by vendor M-files Corporation Subscriptions
Filtered by product M-files Server Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2026-0663 1 M-files Corporation 1 M-files Server 2026-01-22 N/A
Denial-of-service vulnerability in M-Files Server versions before 26.1.15632.3 allows an authenticated attacker with vault administrator privileges to crash the M-Files Server process by calling a vulnerable API endpoint.
CVE-2025-13008 2 M-files, M-files Corporation 3 M-files Server, Server, M-files Server 2026-01-07 N/A
An information disclosure vulnerability in M-Files Server before versions 25.12.15491.7, 25.8 LTS SR3, 25.2 LTS SR3 and 24.8 LTS SR5 allows an authenticated attacker using M-Files Web to capture session tokens of other active users.