CVE-2025-15585 - Fileflows MySQL Authenticated SQL Injection Vulnerability

CVE-2025-15585 - Fileflows MySQL Authenticated SQL Injection Vulnerability

CVE ID : CVE-2025-15585 Published : Feb. 18, 2026, 11:44 p.m. | 27 minutes ago Description : Fileflows versions before 25.05 are affected by an authenticated SQL injection vulnerability in the library-file search function. Successful exploitation requires the system to use MySQL as the underlying database and could result in privilege escalation or data exfiltration. Severity: 6.7 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Feb. 18, 2026
Affected Product: MySQL
Impact: SQL injection