CVE-2026-0983: Denial of service vulnerability in M-Files Server
Published May 18, 2026
·Updated
Denial-of-service condition in M-Files Server versions before 26.5.16015.0, before 26.2 LTS, and before 25.8 LTS SR3 allows an authenticated user to cause the MFserver process to crash
Affected Software
1 affected component
M-Files M-Files server<26.5.16015.0, <26.2 LTS, <25.8 LTS SR3
Event History
May 18, 2026
CVE Published
via MITRE·11:05 AM
Data Sourced
via MITRE·11:05 AM
DescriptionWeakness
Data Sourced
via NVD·12:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-0983?
CVE-2026-0983 is classified as a denial of service vulnerability, which can significantly impact system availability.
2
How do I fix CVE-2026-0983?
To fix CVE-2026-0983, update your M-Files Server to version 26.5.16015.0, 26.2 LTS, or 25.8 LTS SR3 or later.
3
What versions of M-Files Server are affected by CVE-2026-0983?
M-Files Server versions before 26.5.16015.0, 26.2 LTS, and 25.8 LTS SR3 are affected by CVE-2026-0983.
4
Who can exploit CVE-2026-0983?
CVE-2026-0983 can be exploited by authenticated users to cause the MFserver process to crash.
5
What happens if CVE-2026-0983 is exploited?
Exploitation of CVE-2026-0983 can result in the M-Files Server becoming unavailable, leading to a denial-of-service condition.