CVE-2026-0931: Denial-of-service vulnerability in M-Files Server
Denial-of-service vulnerability in M-Files Server versions before 26.5.16015.3 allows an authenticated admin user to cause the M-Files Server process to crash and fail to restart.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
M-Files Serverto a version that resolves this vulnerability.Fixed in 26.5.16015.3
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0931?
The severity of CVE-2026-0931 is rated at 40, indicating a significant risk of denial-of-service.
How do I fix CVE-2026-0931?
To fix CVE-2026-0931, upgrade to M-Files Server version 26.5.16015.3 or later.
Who is affected by CVE-2026-0931?
CVE-2026-0931 affects all authenticated admin users of M-Files Server versions prior to 26.5.16015.3.
What impact does CVE-2026-0931 have on M-Files Server?
CVE-2026-0931 allows an authenticated admin user to crash the M-Files Server process, leading to a denial-of-service.
What should I do if I cannot upgrade to fix CVE-2026-0931?
If you cannot upgrade, mitigate the risk by restricting admin access and monitoring system usage closely.