Medium severity5.4NVD Advisory· Published Apr 4, 2025· Updated Jun 17, 2026
CVE-2025-3087
CVE-2025-3087
Description
Stored XSS in M-Files Web versions from 25.1.14445.5 to 25.2.14524.4 allows an authenticated user to run scripts
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:m-files:m-files_web:*:*:*:*:-:*:*:*+ 1 more
- cpe:2.3:a:m-files:m-files_web:*:*:*:*:-:*:*:*range: >=25.1.14445.5,<=25.2.14524.4
- (no CPE)range: 25.1.14445.5 - 25.2.14524.4
- M-Files Corporation/M-Files Webv5Range: 25.1.14445.5
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.