CVE-2025-14267

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
19/12/2025
Last modified:
06/01/2026

Description

Incomplete removal of sensitive information before transfer vulnerability in M-Files Corporation M-Files Server allows data leak exposure affecting versions before 25.12.15491.7

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:m-files:m-files_server:*:*:*:*:*:*:*:* 25.12.15491.7 (excluding)


References to Advisories, Solutions, and Tools