CVE Browser

More filters (active)

Page 1 (more results available)

Vendor: M-Files Remove filter Clear all
CVE-2026-18372 MEDIUM

CSS injection in M-Files Web

CVSS 4.8 EPSS 0.43% Aug 19, 2026
CVE-2026-18371 MEDIUM

HTML injection in M-Files Web

CVSS 5.1 EPSS 0.40% Aug 19, 2026
CVE-2026-0931 MEDIUM

Denial-of-service vulnerability in M-Files Server

CVSS 6.9 EPSS 0.41% Aug 5, 2026
CVE-2026-0983 HIGH

Denial of service vulnerability in M-Files Server

CVSS 7.1 EPSS 0.23% May 18, 2026
CVE-2026-0932 MEDIUM

Blind server-side request forgery (SSRF) vulnerability in legacy connection methods of document co-authoring features in M-Files Server before 26.3 allow an un…

CVSS 6.9 EPSS 0.19% Apr 1, 2026
CVE-2026-0663 MEDIUM

Denial of Service condition in M-Files Server

CVSS 6.9 EPSS 0.41% Jan 21, 2026
CVE-2025-13008 HIGH

Session Token Disclosure in M-Files Web

CVSS 8.6 EPSS 0.48% Dec 19, 2025
CVE-2025-14267 MEDIUM

Unintended temporary cached data included in a structure only copy intended to be empty of data

CVSS 5.6 EPSS 0.38% Dec 19, 2025
CVE-2025-14318 MEDIUM

Improper access validation in M-Files Server

CVSS 5.3 EPSS 0.31% Dec 18, 2025
CVE-2025-11681 HIGH

Denial of Service condition in M-Files Server

CVSS 7.1 EPSS 0.39% Nov 17, 2025
CVE-2025-9826 HIGH

Stored cross-site scripting vulnerability in M-Files Hubshare before version 25.8 allows authenticated attackers to cause script execution for other users.

CVSS 7.0 EPSS 0.26% Sep 15, 2025
CVE-2025-2091 MEDIUM

Open redirection in M-Files Mobile

CVSS 4.8 EPSS 0.27% Jun 16, 2025
CVE-2025-5964 HIGH

Path traversal in M-Files API

CVSS 8.4 EPSS 12.72% Jun 15, 2025
CVE-2025-3087 MEDIUM

Stored XSS Vulnerability in M-Files Web

CVSS 5.1 EPSS 0.27% Apr 4, 2025
CVE-2025-3086 MEDIUM

User in anonymous role could create and delete views

CVSS 6.3 EPSS 0.42% Apr 4, 2025
CVE-2025-2159 MEDIUM

Stored XSS in M-Files Admin user interface

CVSS 5.1 EPSS 0.22% Apr 4, 2025
CVE-2025-0635 MEDIUM

Denial of Service condition in M-Files Server

CVSS 6.3 EPSS 0.53% Jan 23, 2025
CVE-2025-0619 MEDIUM

Unsafe stored password recovery

CVSS 4.6 EPSS 0.42% Jan 23, 2025
CVE-2025-0648 MEDIUM

M-Files Server crash via EOT database driver configuration

CVSS 5.9 EPSS 0.51% Jan 23, 2025
CVE-2024-10126 MEDIUM

Local file inclusion vulnerability in M-Files Server

CVSS 5.3 EPSS 0.39% Nov 20, 2024
CVE-2024-10127 CRITICAL

Support for authentication bypass condition in M-Files LDAP authentication

CVSS 9.2 EPSS 0.61% Nov 20, 2024
CVE-2024-11176 MEDIUM

Incorrect evaluation of effective permissions in M-Files Aino

CVSS 5.3 EPSS 0.40% Nov 20, 2024
CVE-2024-9333 MEDIUM

Permission bypass in M-Files Connector for Copilot

CVSS 5.3 EPSS 0.42% Oct 2, 2024
CVE-2024-9174 MEDIUM

Stored HTML Injection in Hubshare social module

CVSS 6.9 EPSS 0.29% Oct 2, 2024
CVE-2024-6789 HIGH

Path traversal in M-Files API

CVSS 8.4 EPSS 0.56% Aug 27, 2024

Showing 1 to 25 CVEs · page 1 (more available)