CVE-2025-53830: Anti-Virus for ownCloud 10 is vulnerable to Server-Side Request Forgery (SSRF)
Anti-Virus for ownCloud is an anti-virus application for file storage, synchronization, and sharing application ownCloud. Versions of Anti-Virus for ownCloud before 1.2.3 are vulnerable to Server-Side Request Forgery (SSRF). This corresponds to versions of ownCloud 10 prior to 10.15.3. Upgrade ownCloud 10 to version 10.15.3 or later or upgrade Anti-Virus for ownCloud 10 to version 1.2.3 or later to receive a fix.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
ownCloud 10to a version that resolves this vulnerability.Fixed in 10.15.3 - Upgrade
Upgrade
Anti-Virus for ownCloud 10to a version that resolves this vulnerability.Fixed in 1.2.3
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53830?
CVE-2025-53830 has a severity rating of 9.1, categorizing it as critical.
How do I fix CVE-2025-53830?
To mitigate CVE-2025-53830, upgrade Anti-Virus for ownCloud to version 1.2.3 or later and ownCloud 10 to version 10.15.3 or later.
What type of vulnerability is CVE-2025-53830?
CVE-2025-53830 is classified as a Server-Side Request Forgery (SSRF) vulnerability.
Which versions are affected by CVE-2025-53830?
Versions of Anti-Virus for ownCloud before 1.2.3 and ownCloud 10 prior to 10.15.3 are vulnerable to CVE-2025-53830.
Is user interaction required to exploit CVE-2025-53830?
No, user interaction is not required to exploit CVE-2025-53830.