Security Advisory

CVE-2026-0663

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-21 10:29:57
Last updated 2026-02-23 10:39:26
Assigner M-Files Corporation
State PUBLISHED

Description

Denial-of-service vulnerability in M-Files Server versions before 26.1.15632.3 allows an authenticated attacker with vault administrator privileges to crash the M-Files Server process by calling a vulnerable API endpoint.