Security: nextcloud/security-advisories
Security Advisories
View information about security vulnerabilities from this repository's maintainers.
-
Information disclosure via Desktop client when attempting to lock a file inside a end-to-end encrypted directoryGHSA-h9xj-qh76-q3hw published
Dec 5, 2025 by nickvergessenLow -
Calendar attachments of local files are offered to downloadedGHSA-f29c-ppmv-8mcv published
Dec 5, 2025 by nickvergessenModerate -
admin_audit does not log all actions on files in groupfoldersGHSA-ww9m-f8j4-jj9x published
Dec 5, 2025 by nickvergessenModerate -
Missing ownership check in Tables app allows moving columns into tables of other usersGHSA-w787-vwqp-8wr7 published
Dec 5, 2025 by nickvergessenModerate -
Tables app allowed users to view columns metadata information of any tableGHSA-p53h-6294-crjw published
Dec 5, 2025 by nickvergessenModerate -
Stored XSS in contacts app via organisation and title fieldGHSA-9v78-cpfc-v6h2 published
Dec 5, 2025 by nickvergessenLow -
Participants were able to blindly delete poll drafts of other users by IDGHSA-pr9f-vqgg-m2jh published
Dec 5, 2025 by nickvergessenLow -
Deck app allowed user with "Can share" permission to modify permissions of other non-ownersGHSA-wwr8-hx9g-rjvv published
Dec 5, 2025 by nickvergessenModerate -
WebAuthn app was updated based on public keyGHSA-fr8x-mvjg-wf9q published
Dec 5, 2025 by nickvergessenLow -
Development files shipped in files_pdfviewer appGHSA-24wp-p865-7j4r published
Dec 5, 2025 by nickvergessenModerate