Vulnerabilities > Nextcloud > Nextcloud Server > 19.0.13.9
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-03-08 | CVE-2021-41241 | Unspecified vulnerability in Nextcloud Server Nextcloud server is a self hosted system designed to provide cloud style services. | 4.3 |
2022-03-08 | CVE-2021-41239 | Unspecified vulnerability in Nextcloud Server Nextcloud server is a self hosted system designed to provide cloud style services. | 5.3 |
2021-10-25 | CVE-2021-41177 | Unspecified vulnerability in Nextcloud Server Nextcloud is an open-source, self-hosted productivity platform. | 8.1 |
2021-09-07 | CVE-2021-32800 | Unspecified vulnerability in Nextcloud Server Nextcloud server is an open source, self hosted personal cloud. | 8.1 |
2021-09-07 | CVE-2021-32801 | Unspecified vulnerability in Nextcloud Server Nextcloud server is an open source, self hosted personal cloud. | 5.5 |
2021-09-07 | CVE-2021-32802 | Unspecified vulnerability in Nextcloud Server Nextcloud server is an open source, self hosted personal cloud. | 9.8 |
2021-09-07 | CVE-2021-32766 | Information Exposure Through an Error Message vulnerability in Nextcloud Server Nextcloud Text is an open source plaintext editing application which ships with the nextcloud server. | 5.3 |
2021-03-03 | CVE-2021-22878 | Cross-site Scripting vulnerability in multiple products Nextcloud Server prior to 20.0.6 is vulnerable to reflected cross-site scripting (XSS) due to lack of sanitization in `OC.Notification.show`. | 4.8 |
2021-03-03 | CVE-2021-22877 | Missing Authorization vulnerability in multiple products A missing user check in Nextcloud prior to 20.0.6 inadvertently populates a user's own credentials for other users external storage configuration when not already configured yet. | 6.5 |
2021-03-03 | CVE-2020-8296 | Weak Password Requirements vulnerability in multiple products Nextcloud Server prior to 20.0.0 stores passwords in a recoverable format even when external storage is not configured. | 6.7 |