<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Nextcloud (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/nextcloud.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/nextcloud-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Nextcloud (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:35 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-45722 – Nextcloud is an open source content collaboration platform. From versions 0.9.0 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45722</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45722</guid>
    <pubDate>Mon, 01 Jun 2026 19:16:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45722</strong></p>
  <p>Nextcloud is an open source content collaboration platform. From versions 0.9.0 to before 0.9.7, and 1.0.0 to before 1.0.2, a missing sanitization in the Tables app allowed a user with access to the tables app to perform a limited SQL injection in the ORDER BY statement of a query. Compared to normal SQL injections, the ORDER BY is limited to extracting a single bit of information per request or…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45722">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45545 – Nextcloud is an open source content collaboration platform. From versions 0.7.0 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45545</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45545</guid>
    <pubDate>Mon, 01 Jun 2026 19:16:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45545</strong></p>
  <p>Nextcloud is an open source content collaboration platform. From versions 0.7.0 to before 0.7.7, 0.8.0 to before 0.8.10, 0.9.0 to before 0.9.8, and 1.0.0 to before 1.0.4, an authenticated attacker with access to the Tables app may be able to execute arbitrary up to 20 bytes long SQL queries, through a stored injection. With carefully crafted input it is possible to break out of the length limitat…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45545">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45281 – Nextcloud is an open source content collaboration platform. In Nextcloud Server ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45281</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45281</guid>
    <pubDate>Mon, 01 Jun 2026 19:16:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45281</strong></p>
  <p>Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.9, and 33.0.0 to before 33.0.3, with the knowledge of other users’ principal URL an attacker could possibly send a request to gain full access to their calendar. Therefore, the attacker must be an authenticated user. This is because of improper authorization controls in the backend…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45281">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45156 – Nextcloud is an open source content collaboration platform. From versions 0.3.0 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45156</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45156</guid>
    <pubDate>Mon, 01 Jun 2026 17:17:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45156</strong></p>
  <p>Nextcloud is an open source content collaboration platform. From versions 0.3.0 to before 3.1.0, 5.0.0 to before 5.1.0, and 6.0.0 to before 6.4.0, a missing signature verification in User OIDC allowed a malicious ID4me authority to identify as any user. This issue has been patched in versions 3.1.0, 4.1.0, 5.1.0, 6.4.0 and 8.3.0.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45156">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-28474 – OpenClaw's Nextcloud Talk plugin versions prior to 2026.2.6 accept equality matc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28474</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28474</guid>
    <pubDate>Thu, 05 Mar 2026 22:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-28474</strong></p>
  <p>OpenClaw's Nextcloud Talk plugin versions prior to 2026.2.6 accept equality matching on the mutable actor.name display name field for allowlist validation, allowing attackers to bypass DM and room allowlists. An attacker can change their Nextcloud display name to match an allowlisted user ID and gain unauthorized access to restricted conversations.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28474">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-66208 – Collabora Online - Built-in CODE Server (richdocumentscode) provides a built-in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66208</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66208</guid>
    <pubDate>Wed, 03 Dec 2025 19:15:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-66208</strong></p>
  <p>Collabora Online - Built-in CODE Server (richdocumentscode) provides a built-in server with all of the document editing features of Collabora Online. In versions prior to 25.04.702, Collabora Online has a Configuration-Dependent RCE (OS Command Injection) in richdocumentscode proxy. Users of Nextcloud with Collabora Online - Built-in CODE Server app can be vulnerable to attack via proxy.php and a…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66208">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-52508 – Nextcloud Mail is the mail app for Nextcloud, a self-hosted productivity platfor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-52508</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-52508</guid>
    <pubDate>Fri, 15 Nov 2024 18:15:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-52508</strong></p>
  <p>Nextcloud Mail is the mail app for Nextcloud, a self-hosted productivity platform. When a user is trying to set up a mail account with an email address like user@example.tld that does not support auto configuration, and an attacker managed to register autoconfig.tld, the used email details would be send to the server of the attacker. It is recommended that the Nextcloud Mail app is upgraded to 1.…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-52508">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-46958 – In Nextcloud Desktop Client 3.13.1 through 3.13.3 on Linux, synchronized files (...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-46958</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-46958</guid>
    <pubDate>Mon, 16 Sep 2024 02:15:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-46958</strong></p>
  <p>In Nextcloud Desktop Client 3.13.1 through 3.13.3 on Linux, synchronized files (between the server and client) may become world writable or world readable. This is fixed in 3.13.4.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-46958">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37882 – Nextcloud Server is a self hosted personal cloud system. A recipient of a share ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37882</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37882</guid>
    <pubDate>Fri, 14 Jun 2024 16:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37882</strong></p>
  <p>Nextcloud Server is a self hosted personal cloud system. A recipient of a share with read&share permissions could reshare the item with more permissions. It is recommended that the Nextcloud Server is upgraded to 26.0.13 or 27.1.8 or 28.0.4 and that the Nextcloud Enterprise Server is upgraded to 26.0.13 or 27.1.8 or 28.0.4.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37882">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-37313 – Nextcloud server is a self hosted personal cloud system. Under some circumstance...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-37313</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-37313</guid>
    <pubDate>Fri, 14 Jun 2024 15:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-37313</strong></p>
  <p>Nextcloud server is a self hosted personal cloud system. Under some circumstance it was possible to bypass the second factor of 2FA after successfully providing the user credentials. It is recommended that the Nextcloud Server is upgraded to 26.0.13, 27.1.8 or 28.0.4 and Nextcloud Enterprise Server is upgraded to 21.0.9.17, 22.2.10.22, 23.0.12.17, 24.0.12.13, 25.0.13.8, 26.0.13, 27.1.8 or 28.0.4.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-37313">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-22212 – Nextcloud Global Site Selector is a tool which allows you to run multiple small ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-22212</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-22212</guid>
    <pubDate>Thu, 18 Jan 2024 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-22212</strong></p>
  <p>Nextcloud Global Site Selector is a tool which allows you to run multiple small Nextcloud instances and redirect users to the right server. A problem in the password verification method allows an attacker to authenticate as another user. It is recommended that the Nextcloud Global Site Selector is upgraded to version 1.4.1, 2.1.2, 2.3.4 or 2.4.5. There are no known workarounds for this issue.</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-22212">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-49782 – Collabora Online is a collaborative online office suite based on LibreOffice tec...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-49782</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-49782</guid>
    <pubDate>Fri, 08 Dec 2023 20:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-49782</strong></p>
  <p>Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with `Collabora Online - Built-in CODE Server` app can be vulnerable to attack via proxy.php. The bug was fixed in Collabora Online - Built-in CODE Server (richdocumentscode) release 23.5.601. Users are advised to upgrade. There are no known workarounds for this vulnerability.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-49782">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-48314 – Collabora Online is a collaborative online office suite based on LibreOffice tec...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-48314</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-48314</guid>
    <pubDate>Fri, 01 Dec 2023 22:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-48314</strong></p>
  <p>Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with Collabora Online Built-in CODE Server app can be vulnerable to attack via proxy.php. This vulnerability has been fixed in Collabora Online - Built-in CODE Server (richdocumentscode) release 23.5.403. Users are advised to upgrade. There are no known workarounds for this vulnerability.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-48314">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-48239 – Nextcloud Server provides data storage for Nextcloud, an open source cloud platf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-48239</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-48239</guid>
    <pubDate>Tue, 21 Nov 2023 21:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-48239</strong></p>
  <p>Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prior to versions 25.0.13, 26.0.8, and 27.1.3 of Nextcloud Server and starting in version 20.0.0 and prior to versions 20.0.14.16, 21.0.9.13, 22.2.10.15, 23.0.12.12, 24.0.12.8, 25.0.13, 26.0.8, and 27.1.3 of Nextcloud Enterprise Server, a malicious user could update any personal or…</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-48239">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-39963 – Nextcloud Server provides data storage for Nextcloud, an open source cloud platf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-39963</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-39963</guid>
    <pubDate>Thu, 10 Aug 2023 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-39963</strong></p>
  <p>Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 20.0.0 and prior to versions 20.0.14.15, 21.0.9.13, 22.2.10.14, 23.0.12.8, 24.0.12.5, 25.0.9, 26.0.4, and 27.0.1, a missing password confirmation allowed an attacker, after successfully stealing a session from a logged in user, to create app passwords for the victim. Nextcloud server versions…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-39963">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-39962 – Nextcloud Server provides data storage for Nextcloud, an open source cloud platf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-39962</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-39962</guid>
    <pubDate>Thu, 10 Aug 2023 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-39962</strong></p>
  <p>Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 19.0.0 and prior to versions 19.0.13.10, 20.0.14.15, 21.0.9.13, 22.2.10.14, 23.0.12.8, 24.0.12.5, 25.0.9, 26.0.4, and 27.0.1, a malicious user could delete any personal or global external storage, making them inaccessible for everyone else as well. Nextcloud server versions 25.0.9, 26.0.4, and…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-39962">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-39957 – Nextcloud Talk Android allows users to place video and audio calls through Nextc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-39957</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-39957</guid>
    <pubDate>Thu, 10 Aug 2023 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-39957</strong></p>
  <p>Nextcloud Talk Android allows users to place video and audio calls through Nextcloud on Android. Prior to version 17.0.0, an unprotected intend allowed malicious third party apps to trick the Talk Android app into writing files outside of its intended cache directory. Nextcloud Talk Android version 17.0.0 has a patch for this issue. No known workarounds are available.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-39957">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-35928 – Nextcloud Server is a space for data storage on Nextcloud, a self-hosted product...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-35928</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-35928</guid>
    <pubDate>Fri, 23 Jun 2023 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-35928</strong></p>
  <p>Nextcloud Server is a space for data storage on Nextcloud, a self-hosted productivity playform. In NextCloud Server versions 25.0.0 until 25.0.7 and 26.0.0 until 26.0.2 and Nextcloud Enterprise Server versions 19.0.0 until 19.0.13.9, 20.0.0 until 20.0.14.14, 21.0.0 until 21.0.9.12, 22.0.0 until 22.2.10.12, 23.0.0 until 23.0.12.7, 24.0.0 until 24.0.12.2, 25.0.0 until 25.0.7, and 26.0.0 until 26.0.…</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-274</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-35928">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-35927 – NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-35927</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-35927</guid>
    <pubDate>Fri, 23 Jun 2023 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-35927</strong></p>
  <p>NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform. In NextCloud Server versions 25.0.0 until 25.0.7 and 26.0.0 until 26.0.2 and Nextcloud Enterprise Server versions 21.0.0 until 21.0.9.12, 22.0.0 until 22.2.10.12, 23.0.0 until 23.0.12.7, 24.0.0 until 24.0.12.2, 25.0.0 until 25.0.7, and 26.0.0 until 26.0.2, when two server are…</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-35927">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-35172 – NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-35172</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-35172</guid>
    <pubDate>Fri, 23 Jun 2023 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-35172</strong></p>
  <p>NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform. In NextCloud Server versions 25.0.0 until 25.0.7 and 26.0.0 until 26.0.2 and Nextcloud Enterprise Server versions 21.0.0 until 21.0.9.12, 22.0.0 until 22.2.10.12, 23.0.0 until 23.0.12.7, 24.0.0 until 24.0.12.2, 25.0.0 until 25.0.7, and 26.0.0 until 26.0.2, an attacker can brut…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-35172">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-32320 – Nextcloud Server is a data storage system for Nextcloud, a self-hosted productiv...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32320</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32320</guid>
    <pubDate>Thu, 22 Jun 2023 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-32320</strong></p>
  <p>Nextcloud Server is a data storage system for Nextcloud, a self-hosted productivity platform. When multiple requests are sent in parallel, all of them were executed even if the amount of faulty requests succeeded the limit by the time the response was sent to the client. This allowed someone to send as many requests the server could handle in parallel to bruteforce protected details instead of th…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32320">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-32319 – Nextcloud server is an open source personal cloud implementation. Missing brute-...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32319</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32319</guid>
    <pubDate>Fri, 26 May 2023 23:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-32319</strong></p>
  <p>Nextcloud server is an open source personal cloud implementation. Missing brute-force protection on the WebDAV endpoints via the basic auth header allowed to brute-force user credentials when the provided user name was not an email address. Users from version 24.0.0 onward are affected. This issue has been addressed in releases 24.0.11, 25.0.5 and 26.0.0. Users are advised to upgrade. There are n…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32319">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-31128 – NextCloud Cookbook is a recipe library app. Prior to commit a46d9855 on the `mas...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31128</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31128</guid>
    <pubDate>Fri, 26 May 2023 22:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-31128</strong></p>
  <p>NextCloud Cookbook is a recipe library app. Prior to commit a46d9855 on the `master` branch and commit 489bb744 on the `main-0.9.x` branch, the `pull-checks.yml` workflow is vulnerable to command injection attacks because of using an untrusted `github.head_ref` field. The `github.head_ref` value is an attacker-controlled value. Assigning the value to `zzz";echo${IFS}"hello";#` can lead to command…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31128">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-32318 – Nextcloud server provides a home for data. A regression in the session handling ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32318</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32318</guid>
    <pubDate>Fri, 26 May 2023 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-32318</strong></p>
  <p>Nextcloud server provides a home for data. A regression in the session handling between Nextcloud Server and the Nextcloud Text app prevented a correct destruction of the session on logout if cookies were not cleared manually. After successfully authenticating with any other account the previous session would be continued and the attacker would be authenticated as the previously logged in user. I…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-613</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32318">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-32074 – user_oidc app is an OpenID Connect user backend for Nextcloud. Authentication ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32074</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32074</guid>
    <pubDate>Thu, 25 May 2023 23:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-32074</strong></p>
  <p>user_oidc app is an OpenID Connect user backend for Nextcloud. Authentication can be broken/bypassed in user_oidc app. It is recommended that the Nextcloud user_oidc app is upgraded to 1.3.2</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32074">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-26482 – Nextcloud server is an open source home cloud implementation. In affected versio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-26482</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-26482</guid>
    <pubDate>Thu, 30 Mar 2023 19:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-26482</strong></p>
  <p>Nextcloud server is an open source home cloud implementation. In affected versions a missing scope validation allowed users to create workflows which are designed to be only available for administrators. Some workflows are designed to be RCE by invoking defined scripts, in order to generate PDFs, invoking webhooks or running scripts on the server. Due to this combination depending on the availabl…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-26482">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-31132 – Nextcloud Mail is an email application for the nextcloud personal cloud product...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-31132</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-31132</guid>
    <pubDate>Thu, 04 Aug 2022 17:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-31132</strong></p>
  <p>Nextcloud Mail is an email application for the nextcloud personal cloud product. Affected versions shipped with a CSS minifier on the path `./vendor/cerdic/css-tidy/css_optimiser.php`. Access to the minifier is unrestricted and access may lead to Server-Side Request Forgery (SSRF). It is recommendet to upgrade to Mail 1.12.7 or Mail 1.13.6. Users unable to upgrade may manually delete the file loc…</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-31132">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-43863 – The Nextcloud Android app is the Android client for Nextcloud, a self-hosted pro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-43863</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-43863</guid>
    <pubDate>Tue, 25 Jan 2022 16:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-43863</strong></p>
  <p>The Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. The Nextcloud Android app uses content providers to manage its data. Prior to version 3.18.1, the providers `FileContentProvider` and `DiskLruImageCacheFileProvider` have security issues (an SQL injection, and an insufficient permission control, respectively) that allow malicious apps in the same d…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-43863">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-41178 – Nextcloud is an open-source, self-hosted productivity platform. Prior to version...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41178</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41178</guid>
    <pubDate>Mon, 25 Oct 2021 22:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-41178</strong></p>
  <p>Nextcloud is an open-source, self-hosted productivity platform. Prior to versions 20.0.13, 21.0.5, and 22.2.0, a file traversal vulnerability makes an attacker able to download arbitrary SVG images from the host system, including user provided files. This could also be leveraged into a XSS/phishing attack, an attacker could upload a malicious SVG file that mimics the Nextcloud login form and send…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-23</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41178">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-41177 – Nextcloud is an open-source, self-hosted productivity platform. Prior to version...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41177</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41177</guid>
    <pubDate>Mon, 25 Oct 2021 22:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-41177</strong></p>
  <p>Nextcloud is an open-source, self-hosted productivity platform. Prior to versions 20.0.13, 21.0.5, and 22.2.0, Nextcloud Server did not implement a database backend for rate-limiting purposes. Any component of Nextcloud using rate-limits (as as `AnonRateThrottle` or `UserRateThrottle`) was thus not rate limited on instances not having a memory cache backend configured. In the case of a default in…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-799</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41177">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-39225 – Nextcloud is an open-source, self-hosted productivity platform. A missing permis...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-39225</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-39225</guid>
    <pubDate>Mon, 25 Oct 2021 22:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-39225</strong></p>
  <p>Nextcloud is an open-source, self-hosted productivity platform. A missing permission check in Nextcloud Deck before 1.2.9, 1.4.5 and 1.5.3 allows another authenticated users to access Deck cards of another user. It is recommended that the Nextcloud Deck App is upgraded to 1.2.9, 1.4.5 or 1.5.3. There are no known workarounds aside from upgrading.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-39225">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-32802 – Nextcloud server is an open source, self hosted personal cloud. Nextcloud suppor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32802</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32802</guid>
    <pubDate>Tue, 07 Sep 2021 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-32802</strong></p>
  <p>Nextcloud server is an open source, self hosted personal cloud. Nextcloud supports rendering image previews for user provided file content. For some image types, the Nextcloud server was invoking a third-party library that wasn't suited for untrusted user-supplied content. There are several security concerns with passing user-generated content to this library, such as Server-Side-Request-Forgery,…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-829</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32802">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32800 – Nextcloud server is an open source, self hosted personal cloud. In affected vers...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32800</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32800</guid>
    <pubDate>Tue, 07 Sep 2021 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32800</strong></p>
  <p>Nextcloud server is an open source, self hosted personal cloud. In affected versions an attacker is able to bypass Two Factor Authentication in Nextcloud. Thus knowledge of a password, or access to a WebAuthN trusted device of a user was sufficient to gain access to an account. It is recommended that the Nextcloud Server is upgraded to 20.0.12, 21.0.4 or 22.1.0. There are no workaround for this v…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32800">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-37628 – Nextcloud Richdocuments is an open source collaborative office suite. In affecte...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-37628</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-37628</guid>
    <pubDate>Tue, 07 Sep 2021 21:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-37628</strong></p>
  <p>Nextcloud Richdocuments is an open source collaborative office suite. In affected versions the File Drop features ("Upload Only" public link shares in Nextcloud) can be bypassed using the Nextcloud Richdocuments app. An attacker was able to read arbitrary files in such a share. It is recommended that the Nextcloud Richdocuments is upgraded to 3.8.4 or 4.2.1. If upgrading is not possible then it i…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-37628">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-37617 – The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Serve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-37617</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-37617</guid>
    <pubDate>Wed, 18 Aug 2021 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-37617</strong></p>
  <p>The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server with a computer. The Nextcloud Desktop Client invokes its uninstaller script when being installed to make sure there are no remnants of previous installations. In versions 3.0.3 through 3.2.4, the Client searches the `Uninstall.exe` file in a folder that can be written by regular users. This could lead to a case whe…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-426</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-37617">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32726 – Nextcloud Server is a Nextcloud package that handles data storage. In versions p...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32726</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32726</guid>
    <pubDate>Mon, 12 Jul 2021 20:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32726</strong></p>
  <p>Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, webauthn tokens were not deleted after a user has been deleted. If a victim reused an earlier used username, the previous user could gain access to their account. The issue was fixed in versions 19.0.13, 20.0.11, and 21.0.3. There are no known workarounds.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-708</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32726">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32689 – Nextcloud Talk is a fully on-premises audio/video and chat communication service...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32689</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32689</guid>
    <pubDate>Mon, 12 Jul 2021 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32689</strong></p>
  <p>Nextcloud Talk is a fully on-premises audio/video and chat communication service. In versions prior to 11.2.2, if a user was able to reuse an earlier used username, they could get access to any chat message sent to the previous user with this username. The issue was patched in versions 11.2.2 and 11.3.0. As a workaround, don't allow users to choose usernames themselves. This is the default behavi…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32689">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32688 – Nextcloud Server is a Nextcloud package that handles data storage. Nextcloud Ser...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32688</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32688</guid>
    <pubDate>Mon, 12 Jul 2021 14:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32688</strong></p>
  <p>Nextcloud Server is a Nextcloud package that handles data storage. Nextcloud Server supports application specific tokens for authentication purposes. These tokens are supposed to be granted to a specific applications (e.g. DAV sync clients), and can also be configured by the user to not have any filesystem access. Due to a lacking permission check, the tokens were able to change their own permiss…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32688">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-22915 – Nextcloud server before 19.0.11, 20.0.10, 21.0.2 is vulnerable to brute force at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-22915</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-22915</guid>
    <pubDate>Fri, 11 Jun 2021 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-22915</strong></p>
  <p>Nextcloud server before 19.0.11, 20.0.10, 21.0.2 is vulnerable to brute force attacks due to lack of inclusion of IPv6 subnets in rate-limiting considerations. This could potentially result in an attacker bypassing rate-limit controls such as the Nextcloud brute-force protection.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-22915">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32656 – Nextcloud Server is a Nextcloud package that handles data storage. A vulnerabili...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32656</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32656</guid>
    <pubDate>Tue, 01 Jun 2021 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32656</strong></p>
  <p>Nextcloud Server is a Nextcloud package that handles data storage. A vulnerability in federated share exists in versions prior to 19.0.11, 20.0.10, and 21.0.2. An attacker can gain access to basic information about users of a server by accessing a public link that a legitimate server user added as a federated share. This happens because Nextcloud supports sharing registered users with other Nextc…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32656">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32654 – Nextcloud Server is a Nextcloud package that handles data storage. In versions p...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32654</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32654</guid>
    <pubDate>Tue, 01 Jun 2021 21:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32654</strong></p>
  <p>Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.11, 20.0.10, and 21.0.2, an attacker is able to receive write/read privileges on any Federated File Share. Since public links can be added as federated file share, this can also be exploited on any public link. Users can upgrade to patched versions (19.0.11, 20.0.10 or 21.0.2) or, as a workaround, disable…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32654">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32652 – Nextcloud Mail is a mail app for the Nextcloud platform. A missing permission ch...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32652</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32652</guid>
    <pubDate>Tue, 01 Jun 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32652</strong></p>
  <p>Nextcloud Mail is a mail app for the Nextcloud platform. A missing permission check in Nextcloud Mail before 1.4.3 and 1.8.2 allows another authenticated users to access mail metadata of other users. Versions 1.4.3 and 1.8.2 contain patches for this vulnerability; no workarounds other than the patches are known to exist.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32652">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-22879 – Nextcloud Desktop Client prior to 3.1.3 is vulnerable to resource injection by w...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-22879</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-22879</guid>
    <pubDate>Wed, 14 Apr 2021 13:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-22879</strong></p>
  <p>Nextcloud Desktop Client prior to 3.1.3 is vulnerable to resource injection by way of missing validation of URLs, allowing a malicious server to execute remote commands. User interaction is needed for exploitation.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-99</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-22879">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8295 – A wrong check in Nextcloud Server 19 and prior allowed to perform a denial of se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8295</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8295</guid>
    <pubDate>Tue, 26 Jan 2021 18:16:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8295</strong></p>
  <p>A wrong check in Nextcloud Server 19 and prior allowed to perform a denial of service attack when resetting the password for a user.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8295">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8279 – Missing validation of server certificates for out-going connections in Nextcloud...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8279</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8279</guid>
    <pubDate>Thu, 19 Nov 2020 01:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8279</strong></p>
  <p>Missing validation of server certificates for out-going connections in Nextcloud Social < 0.4.0 allowed a man-in-the-middle attack.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8279">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8259 – Insufficient protection of the server-side encryption keys in Nextcloud Server 1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8259</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8259</guid>
    <pubDate>Mon, 16 Nov 2020 01:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8259</strong></p>
  <p>Insufficient protection of the server-side encryption keys in Nextcloud Server 19.0.1 allowed an attacker to replace the encryption keys.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8259">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8183 – A logic error in Nextcloud Server 19.0.0 caused a plaintext storage of the share...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8183</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8183</guid>
    <pubDate>Mon, 02 Nov 2020 21:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8183</strong></p>
  <p>A logic error in Nextcloud Server 19.0.0 caused a plaintext storage of the share password when it was given on the initial create API call.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-256</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8183">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8182 – Improper access control in Nextcloud Deck 0.8.0 allowed an attacker to reshare b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8182</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8182</guid>
    <pubDate>Mon, 05 Oct 2020 14:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8182</strong></p>
  <p>Improper access control in Nextcloud Deck 0.8.0 allowed an attacker to reshare boards shared with them with more permissions than they had themselves.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8182">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8225 – A cleartext storage of sensitive information in Nextcloud Desktop Client 2.6.4 g...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8225</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8225</guid>
    <pubDate>Fri, 18 Sep 2020 21:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8225</strong></p>
  <p>A cleartext storage of sensitive information in Nextcloud Desktop Client 2.6.4 gave away information about used proxies and their authentication credentials.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8225">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8224 – A code injection in Nextcloud Desktop Client 2.6.4 allowed to load arbitrary cod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8224</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8224</guid>
    <pubDate>Mon, 10 Aug 2020 14:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8224</strong></p>
  <p>A code injection in Nextcloud Desktop Client 2.6.4 allowed to load arbitrary code when placing a malicious OpenSSL config into a fixed directory.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8224">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-8180 – A too lax check in Nextcloud Talk 6.0.4, 7.0.2 and 8.0.7 allowed a code injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8180</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8180</guid>
    <pubDate>Mon, 08 Jun 2020 14:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-8180</strong></p>
  <p>A too lax check in Nextcloud Talk 6.0.4, 7.0.2 and 8.0.7 allowed a code injection when a not correctly sanitized talk command was added by an administrator.</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8180">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8156 – A missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8156</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8156</guid>
    <pubDate>Tue, 12 May 2020 13:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8156</strong></p>
  <p>A missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8156">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8154 – An Insecure direct object reference vulnerability in Nextcloud Server 18.0.2 all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8154</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8154</guid>
    <pubDate>Tue, 12 May 2020 13:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8154</strong></p>
  <p>An Insecure direct object reference vulnerability in Nextcloud Server 18.0.2 allowed an attacker to remote wipe devices of other users when sending a malicious request directly to the endpoint.</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8154">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-8121 – A bug in Nextcloud Server 14.0.4 could expose more data in reshared link shares ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-8121</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-8121</guid>
    <pubDate>Tue, 04 Feb 2020 20:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-8121</strong></p>
  <p>A bug in Nextcloud Server 14.0.4 could expose more data in reshared link shares than intended by the sharer.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-8121">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-15613 – A bug in Nextcloud Server 17.0.1 causes the workflow rules to depend their behav...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-15613</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-15613</guid>
    <pubDate>Tue, 04 Feb 2020 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-15613</strong></p>
  <p>A bug in Nextcloud Server 17.0.1 causes the workflow rules to depend their behaviour on the file extension when checking file mimetypes.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-15613">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-18214 – The Video_Converter app 0.1.0 for Nextcloud allows denial of service (CPU and me...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-18214</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-18214</guid>
    <pubDate>Sat, 19 Oct 2019 14:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-18214</strong></p>
  <p>The Video_Converter app 0.1.0 for Nextcloud allows denial of service (CPU and memory consumption) via multiple concurrent conversions because many FFmpeg processes may be running at once. (The workload is not queued for serial execution.)</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-772</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-18214">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-5476 – An SQL Injection in the Nextcloud Lookup-Server &lt; v0.3.0 (running on https://loo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-5476</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-5476</guid>
    <pubDate>Wed, 07 Aug 2019 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-5476</strong></p>
  <p>An SQL Injection in the Nextcloud Lookup-Server < v0.3.0 (running on https://lookup.nextcloud.com) caused unauthenticated users to be able to execute arbitrary SQL commands.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-5476">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-5454 – SQL Injection in the Nextcloud Android app prior to version 3.0.0 allows to dest...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-5454</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-5454</guid>
    <pubDate>Tue, 30 Jul 2019 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-5454</strong></p>
  <p>SQL Injection in the Nextcloud Android app prior to version 3.0.0 allows to destroy a local cache when a harmful query is executed requiring to resetup the account.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-5454">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-12739 – lib/Controller/ExtractionController.php in the Extract add-on before 1.2.0 for N...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-12739</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-12739</guid>
    <pubDate>Wed, 05 Jun 2019 14:29:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-12739</strong></p>
  <p>lib/Controller/ExtractionController.php in the Extract add-on before 1.2.0 for Nextcloud allows Remote Code Execution via shell metacharacters in a RAR filename via ajax/extractRar.php (nameOfFile and directory parameters).</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-12739">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-16466 – Improper revalidation of permissions in Nextcloud Server prior to 14.0.0, 13.0.6...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-16466</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-16466</guid>
    <pubDate>Tue, 30 Oct 2018 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-16466</strong></p>
  <p>Improper revalidation of permissions in Nextcloud Server prior to 14.0.0, 13.0.6 and 12.0.11 lead to not accepting access restrictions by acess tokens.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-16466">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-3775 – Improper Authentication in Nextcloud Server prior to version 12.0.3 would allow ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-3775</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-3775</guid>
    <pubDate>Sun, 12 Aug 2018 22:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-3775</strong></p>
  <p>Improper Authentication in Nextcloud Server prior to version 12.0.3 would allow an attacker that obtained user credentials to bypass the 2 Factor Authentication.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-3775">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-3761 – Nextcloud Server before 12.0.8 and 13.0.3 suffer from improper authentication on...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-3761</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-3761</guid>
    <pubDate>Thu, 05 Jul 2018 16:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-3761</strong></p>
  <p>Nextcloud Server before 12.0.8 and 13.0.3 suffer from improper authentication on the OAuth2 token endpoint. Missing checks potentially allowed handing out new tokens in case the OAuth2 client was partly compromised.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-3761">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-9286 – The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-9286</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-9286</guid>
    <pubDate>Thu, 01 Mar 2018 20:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-9286</strong></p>
  <p>The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts running as wwwrun user to escalate privileges to root during nextcloud package upgrade.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-9286">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-9463 – Nextcloud Server before 9.0.54 and 10.0.1 &amp; ownCloud Server before 9.1.2, 9.0.6,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-9463</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-9463</guid>
    <pubDate>Tue, 28 Mar 2017 02:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-9463</strong></p>
  <p>Nextcloud Server before 9.0.54 and 10.0.1 & ownCloud Server before 9.1.2, 9.0.6, and 8.2.9 suffer from SMB User Authentication Bypass. Nextcloud/ownCloud include an optional and not by default enabled SMB authentication component that allows authenticating users against an SMB server. This backend is implemented in a way that tries to connect to a SMB server and if that succeeded consider the use…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-303</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-9463">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
