CVE-2025-26497 | Salesforce Tableau Server up to 2023.3.18/2024.2.11/2025.1.2 Flow Editor unrestricted upload
A vulnerability, which was classified as critical, was found in Salesforce Tableau Server up to 2023.3.18/2024.2.11/2025.1.2. Affected by this vulnerability is an unknown functionality of the component Flow Editor Module. Such manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2025-26497. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.