Known Vulnerabilities for Deck by Nextcloud
Listed below are 9 of the newest known vulnerabilities associated with "Deck" by "Nextcloud".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-24906 | Nextcloud Deck is a Kanban-style project & personal management tool for Nextcloud, similar to Trello. The full path of the ap... | 4.3 - MEDIUM | 2022-05-20 | 2023-07-06 |
| CVE-2021-39225 | Nextcloud is an open-source, self-hosted productivity platform. A missing permission check in Nextcloud Deck before 1.2.9, 1.... | 8.1 - HIGH | 2021-10-25 | 2022-04-25 |
| CVE-2021-37631 | Deck is an open source kanban style organization tool aimed at personal planning and project organization for teams integrate... | 6.5 - MEDIUM | 2021-09-07 | 2021-09-14 |
| CVE-2021-22913 | Nextcloud Deck before 1.2.7, 1.4.1 suffers from an information disclosure vulnerability when searches for sharees utilize the... | 6.5 - MEDIUM | 2021-06-11 | 2021-06-23 |
| CVE-2020-8297 | Nextcloud Deck before 1.0.2 suffers from an insecure direct object reference (IDOR) vulnerability that permits users with a d... | 4.3 - MEDIUM | 2021-02-23 | 2021-03-02 |
| CVE-2020-8235 | Missing access control in Nextcloud Deck 1.0.4 caused an insecure direct object reference allowing an attacker to view all at... | 4.3 - MEDIUM | 2020-10-05 | 2020-10-13 |
| CVE-2020-8182 | Improper access control in Nextcloud Deck 0.8.0 allowed an attacker to reshare boards shared with them with more permissions ... | 8 - HIGH | 2020-10-05 | 2020-10-14 |
| CVE-2020-8179 | Improper access control in Nextcloud Deck 1.0.0 allowed an attacker to inject tasks into other users decks. | 4.1 - MEDIUM | 2020-07-02 | 2020-07-08 |
| CVE-2019-15619 | Improper neutralization of file names, conversation names and board names in Nextcloud Server 16.0.3, Nextcloud Talk 6.0.3 an... | 4.8 - MEDIUM | 2020-02-04 | 2020-02-12 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Nextcloud | Deck | 1.0.4 | All | All | All |
| Application | Nextcloud | Deck | 1.0.3 | All | All | All |
| Application | Nextcloud | Deck | 1.0.2 | All | All | All |
| Application | Nextcloud | Deck | 1.0.1 | All | All | All |
| Application | Nextcloud | Deck | 1.0.0 | beta2 | All | All |
| Application | Nextcloud | Deck | 1.0.0 | beta1 | All | All |
| Application | Nextcloud | Deck | 1.0.0 | - | All | All |
| Application | Nextcloud | Deck | 0.8.3 | All | All | All |
| Application | Nextcloud | Deck | 0.8.2 | All | All | All |
| Application | Nextcloud | Deck | 0.8.1 | All | All | All |
| Application | Nextcloud | Deck | 0.8.0 | All | All | All |
| Application | Nextcloud | Deck | 0.7.0 | All | All | All |
| Application | Nextcloud | Deck | 0.6.6 | All | All | All |
| Application | Nextcloud | Deck | 0.6.5 | All | All | All |
| Application | Nextcloud | Deck | 0.6.4 | All | All | All |
| Application | Nextcloud | Deck | 0.6.3 | All | All | All |
| Application | Nextcloud | Deck | 0.6.2 | All | All | All |
| Application | Nextcloud | Deck | 0.6.1 | All | All | All |
| Application | Nextcloud | Deck | 0.6.0 | beta2 | All | All |
| Application | Nextcloud | Deck | 0.6.0 | beta1 | All | All |