Unrated severityNVD Advisory· Published Feb 24, 2026· Updated Feb 24, 2026
CVE-2025-46320
CVE-2025-46320
Description
A cross-site scripting (XSS) vulnerability in a FileMaker WebDirect custom homepage could lead to unauthorized access and remote code execution. This vulnerability has been fully addressed in FileMaker Server 22.0.4 and FileMaker Server 21.1.7.
Affected products
2- Range: <22.0.4, <21.1.7
- Claris/FileMaker Serverv5Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.