Filter
AND
-Infinity
0

Nextcloud ServerA wrong configuration in Nextcloud Server 19.0.1 incorrectly made the user feel the passwordless Web…

First published (updated )

Nextcloud ServerNextcloud Server prior to 20.0.0 stores passwords in a recoverable format even when external storage…

First published (updated )

Nextcloud ServerImproper permissions preservation in Nextcloud Server 16.0.1 causes sharees to be able to reshare wi…

First published (updated )

Nextcloud ServerNextcloud Server before 9.0.55 and 10.0.2 suffers from a Denial of Service attack. Due to an error i…

First published (updated )

Nextcloud ServerTwo-Factor Authentication not enforced for pages marked as public

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Nextcloud ServerA missing user check in Nextcloud prior to 20.0.6 inadvertently populates a user's own credentials f…

First published (updated )

Red Hat FedoraA logic error in Nextcloud Server 19.0.0 caused a privilege escalation allowing malicious users to r…

First published (updated )

Nextcloud ServerInput Validation

First published (updated )

Nextcloud ServerSSRF

First published (updated )

Nextcloud ServerA missing access control check in Nextcloud Server < 18.0.1, < 17.0.4, and < 16.0.9 causes hide-down…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Nextcloud ServerHigh memory usage in Nextcloud server

First published (updated )

Nextcloud ServerMissing authorization in Nextcloud text

First published (updated )

Nextcloud ServerMissing brute force protection on cloud federation sharing in Nextcloud Server

First published (updated )

Nextcloud Enterprise ServerException logging in Sharepoint app reveals clear-text connection details

First published (updated )

Nextcloud Enterprise ServerMissing length validation of user displayname in nextcloud server

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Nextcloud Servernextcloud vulnerable to Uncontrolled Resource Consumption

First published (updated )

Nextcloud ServerUser without download rights can download older version of that file in nextcloud server

First published (updated )

Nextcloud ServerAdvanced permissions not respected when copying entire group folders

First published (updated )

Nextcloud ServerNextcloud Server before 9.0.55 and 10.0.2 suffers from a permission increase on re-sharing via OCS A…

First published (updated )

ownCloudXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Nextcloud ServerXSS

First published (updated )

Nextcloud ServerXSS in Nextcloud Text application

First published (updated )

Nextcloud ServerXSS

First published (updated )

Nextcloud ServerNextcloud Server vulnerable to open redirect on "Unsupported browser" warning

First published (updated )

Nextcloud ServerNextcloud Server's global credentials of external storages are sent back to the frontend

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Nextcloud ServerA bug in Nextcloud Server 15.0.2 causes pending 2FA logins to not be correctly expired when the pass…

First published (updated )

Nextcloud ServerMissing brute force protection on password reset token OAuth2 API controller

First published (updated )

Nextcloud ServerA missing access check in Nextcloud Server prior to 14.0.0 could lead to continued access to passwor…

First published (updated )

Nextcloud ServerNextcloud Server before 11.0.7 and 12.0.5 suffers from an Authorization Bypass Through User-Controll…

First published (updated )

Nextcloud ServerExceptions may have logged Encryption-at-Rest key content in Nextcloud server

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203