Security Advisory

CVE-2025-2091

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-06-16 08:27:13
Last updated 2026-02-23 10:25:35
Assigner M-Files Corporation
State PUBLISHED

Description

An open redirection vulnerability in M-Files mobile applications for Android and iOS prior to version 25.6.0 allows attackers to use maliciously crafted PDF files to trick other users into making requests to untrusted URLs.