Vulnerabilities > Nextcloud > Deck > 1.4.0

DATE CVE VULNERABILITY TITLE RISK
2023-01-14 CVE-2023-22470 Improper Input Validation vulnerability in Nextcloud Deck
Nextcloud Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with Nextcloud.
network
low complexity
nextcloud CWE-20
6.5
2023-01-14 CVE-2023-22471 Authorization Bypass Through User-Controlled Key vulnerability in Nextcloud Deck
Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with Nextcloud.
network
low complexity
nextcloud CWE-639
4.3
2023-01-10 CVE-2023-22469 Insecure Storage of Sensitive Information vulnerability in Nextcloud Deck
Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with Nextcloud.
network
low complexity
nextcloud CWE-922
3.5
2022-05-20 CVE-2022-24906 Information Exposure Through an Error Message vulnerability in Nextcloud Deck
Nextcloud Deck is a Kanban-style project & personal management tool for Nextcloud, similar to Trello.
network
low complexity
nextcloud CWE-209
4.3
2022-05-20 CVE-2022-29159 Authorization Bypass Through User-Controlled Key vulnerability in Nextcloud Deck
Nextcloud Deck is a Kanban-style project & personal management tool for Nextcloud.
network
low complexity
nextcloud CWE-639
4.0
2021-10-25 CVE-2021-39225 Missing Authorization vulnerability in Nextcloud Deck
Nextcloud is an open-source, self-hosted productivity platform.
network
low complexity
nextcloud CWE-862
5.5
2021-09-07 CVE-2021-37631 Authorization Bypass Through User-Controlled Key vulnerability in Nextcloud Deck
Deck is an open source kanban style organization tool aimed at personal planning and project organization for teams integrated with Nextcloud.
network
low complexity
nextcloud CWE-639
4.0
2021-06-11 CVE-2021-22913 Information Exposure vulnerability in Nextcloud Deck
Nextcloud Deck before 1.2.7, 1.4.1 suffers from an information disclosure vulnerability when searches for sharees utilize the lookup server by default instead of only the local Nextcloud server unless a global search has been explicitly chosen by the user.
network
nextcloud CWE-200
4.3