Vulnerabilities > Nextcloud > Mail

DATE CVE VULNERABILITY TITLE RISK
2023-11-21 CVE-2023-48307 Server-Side Request Forgery (SSRF) vulnerability in Nextcloud Mail
Nextcloud Mail is the mail app for Nextcloud, a self-hosted productivity platform.
network
low complexity
nextcloud CWE-918
critical
9.8
2023-10-16 CVE-2023-45660 Server-Side Request Forgery (SSRF) vulnerability in Nextcloud Mail
Nextcloud mail is an email app for the Nextcloud home server platform.
network
low complexity
nextcloud CWE-918
4.3
2023-02-13 CVE-2023-25160 Authorization Bypass Through User-Controlled Key vulnerability in Nextcloud Mail
Nextcloud Mail is an email app for the Nextcloud home server platform.
network
low complexity
nextcloud CWE-639
5.3
2023-02-06 CVE-2023-23943 Server-Side Request Forgery (SSRF) vulnerability in Nextcloud Mail
Nextcloud mail is an email app for the nextcloud home server platform.
low complexity
nextcloud CWE-918
4.3
2023-02-06 CVE-2023-23944 Cleartext Storage of Sensitive Information vulnerability in Nextcloud Mail
Nextcloud mail is an email app for the nextcloud home server platform.
network
low complexity
nextcloud CWE-312
6.5
2021-10-25 CVE-2021-39220 Improper Input Validation vulnerability in Nextcloud Mail
Nextcloud is an open-source, self-hosted productivity platform The Nextcloud Mail application prior to versions 1.10.4 and 1.11.0 does by default not render images in emails to not leak the read state or user IP.
network
nextcloud CWE-20
3.5