CVE-2025-0635: M-Files Server

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

Denial of service condition in M-Files Server in versions before 25.1.14445.5 allows an unauthenticated user to consume computing resources in certain conditions.

Affected products

  • M-Files M-Files Server: before 25.1.14445.5 (fixed in 25.1.14445.5)

Published 2025-01-23. Last modified 2026-06-17.