Vulnerabilities > Nextcloud > Talk > 1.0.21

DATE CVE VULNERABILITY TITLE RISK
2018-08-13 CVE-2018-3781 Cross-site Scripting vulnerability in Nextcloud Talk
A missing sanitization of search results for an autocomplete field in NextCloud Talk <3.2.5 could lead to a stored XSS requiring user-interaction.
network
low complexity
nextcloud CWE-79
5.4