CVE-2024-4056: M-Files Server

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

Denial of service condition in M-Files Server in versions before 24.4.13592.4 and after 23.11 (excluding 24.2 LTS) allows unauthenticated user to consume computing resources.

Affected products

  • M-Files M-Files Server: from 23.11.13168.6, before 24.4.13592 (fixed in 24.4.13592)

Published 2024-04-26. Last modified 2026-06-17.