Vulnerabilities > Nextcloud > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-09-16 CVE-2024-46958 Unspecified vulnerability in Nextcloud Desktop 3.13.1/3.13.2/3.13.3
In Nextcloud Desktop Client 3.13.1 through 3.13.3 on Linux, synchronized files (between the server and client) may become world writable or world readable.
network
low complexity
nextcloud
critical
9.1
2024-01-18 CVE-2024-22212 Unspecified vulnerability in Nextcloud Global Site Selector
Nextcloud Global Site Selector is a tool which allows you to run multiple small Nextcloud instances and redirect users to the right server.
network
low complexity
nextcloud
critical
9.8
2023-12-22 CVE-2023-49792 Unspecified vulnerability in Nextcloud Server
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform.
network
low complexity
nextcloud
critical
9.8
2023-11-21 CVE-2023-48306 Server-Side Request Forgery (SSRF) vulnerability in Nextcloud Server
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform.
network
low complexity
nextcloud CWE-918
critical
9.8
2023-11-21 CVE-2023-48307 Unspecified vulnerability in Nextcloud Mail
Nextcloud Mail is the mail app for Nextcloud, a self-hosted productivity platform.
network
low complexity
nextcloud
critical
9.8
2023-06-23 CVE-2023-35172 Unspecified vulnerability in Nextcloud Server
NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform.
network
low complexity
nextcloud
critical
9.1
2023-05-25 CVE-2023-32074 Improper Restriction of Excessive Authentication Attempts vulnerability in Nextcloud User Oidc
user_oidc app is an OpenID Connect user backend for Nextcloud.
network
low complexity
nextcloud CWE-307
critical
9.8
2022-08-04 CVE-2022-31132 Unspecified vulnerability in Nextcloud Mail
Nextcloud Mail is an email application for the nextcloud personal cloud product.
network
low complexity
nextcloud
critical
9.8
2022-04-11 CVE-2022-24838 Injection vulnerability in Nextcloud Calendar
Nextcloud Calendar is a calendar application for the nextcloud framework.
network
low complexity
nextcloud CWE-74
critical
9.8
2021-09-07 CVE-2021-32802 Unspecified vulnerability in Nextcloud Server
Nextcloud server is an open source, self hosted personal cloud.
network
low complexity
nextcloud
critical
9.8