Description

FileRise is a self-hosted web file manager / WebDAV server. Prior to 3.3.0, an HTML Injection vulnerability allows an authenticated user to modify the DOM and add e.g. form elements that call certain endpoints or link elements that redirect the user on active interaction. This vulnerability is fixed in 3.3.0.

INFO

Published Date :

2026-02-09T18:32:09.795Z

Last Modified :

2026-02-10T16:01:32.571Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2026-25230 vulnerability.

Vendors Products
Error311
  • Filerise
Filerise
  • Filerise

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact