CVE-2025-2069: Filez Client

Medium severity, CVSS 5.0. EPSS: 0.2% chance of exploitation in the next 30 days.

A cross-site scripting vulnerability was reported in the FileZ client that could allow execution of code if a crafted url is visited by a local user.

Affected products

  • Filez Client: before 11.0.0.10 (fixed in 11.0.0.10)

Published 2025-04-25. Last modified 2026-06-17.