First published: Fri May 24 2024(Updated: )
Stored Cross-Site Scripting vulnerability in Social Module in M-Files Hubshare before version 5.0.6.0 allows authenticated attacker to run scripts in other users browser
Credit: security@m-files.com
Affected Software | Affected Version | How to fix |
---|---|---|
M-Files | <5.0.6.0 |
Update to patched version
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5142 is classified as a stored cross-site scripting vulnerability.
To fix CVE-2024-5142, update M-Files Hubshare to version 5.0.6.0 or later.
Authenticated users of M-Files Hubshare versions prior to 5.0.6.0 are affected by CVE-2024-5142.
An attacker can run scripts in other users' browsers, potentially compromising user data and security.
CVE-2024-5142 was identified in M-Files Hubshare before version 5.0.6.0.