CVE-2025-46320
EUVD-2025-20810224.02.2026, 21:16
A cross-site scripting (XSS) vulnerability in a FileMaker WebDirect custom homepage could lead to unauthorized access and remote code execution. This vulnerability has been fully addressed in FileMaker Server 22.0.4 and FileMaker Server 21.1.7.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| claris | filemaker_server | 𝑥 < 21.1.7 |
| claris | filemaker_server | 22.0.1 ≤ 𝑥 < 22.0.4 |
𝑥
= Vulnerable software versions