CVE List

CVE-2020-28644

Moderate 4.3

The CSRF (Cross Site Request Forgery) token check was improperly implemented on cookie authenticated requests against some ocs API endpoints. This affects ownCloud/core version < 10.6.

Published February 10, 2021.

Affected software

Get alerts for Owncloud Owncloud

Reference links