Denial-of-service vulnerability in M-Files Server versions before 26.1.15632.3 allows an authenticated attacker with vault administrator privileges to crash the M-Files Server process by calling a vulnerable API endpoint.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-0663.json"
[ { "events": [ { "introduced": "0" }, { "fixed": "26.1.15632.3" } ] } ]