CVE Database
/

CVE-2025-46320

Back to search

CVE-2025-46320

Published: Feb 24, 2026

Modified: Feb 24, 2026

PUBLISHED

Description

A cross-site scripting (XSS) vulnerability in a FileMaker WebDirect custom homepage could lead to unauthorized access and remote code execution. This vulnerability has been fully addressed in FileMaker Server 22.0.4 and FileMaker Server 21.1.7.

VendorProductVersions

Claris

FileMaker Server

affected
unspecified - < 22.0.4

Claris

FileMaker Server

affected
unspecified - < 21.1.7

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now