Known Vulnerabilities for Nextcloud Server by Nextcloud
Listed below are 10 of the newest known vulnerabilities associated with "Nextcloud Server" by "Nextcloud".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-24889 | Nextcloud Server is the file server software for Nextcloud, a self-hosted productivity platform. Prior to versions 21.0.8, 22... | 4.3 - MEDIUM | 2022-04-27 | 2022-10-25 |
| CVE-2022-24888 | Nextcloud Server is the file server software for Nextcloud, a self-hosted productivity platform. Prior to versions 20.0.14.4,... | 4.3 - MEDIUM | 2022-04-27 | 2023-07-06 |
| CVE-2022-24741 | Nextcloud server is an open source, self hosted cloud style services platform. In affected versions an attacker can cause a d... | 6.5 - MEDIUM | 2022-03-09 | 2023-06-30 |
| CVE-2021-32656 | Nextcloud Server is a Nextcloud package that handles data storage. A vulnerability in federated share exists in versions prio... | 8.6 - HIGH | 2021-06-01 | 2022-10-25 |
| CVE-2021-32655 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.11, 20.0.10, and 21.0.2, an atta... | 3.5 - LOW | 2021-06-01 | 2022-10-26 |
| CVE-2021-32654 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.11, 20.0.10, and 21.0.2, an atta... | 9.1 - CRITICAL | 2021-06-01 | 2022-10-26 |
| CVE-2021-32653 | Nextcloud Server is a Nextcloud package that handles data storage. Nextcloud Server versions prior to 19.0.11, 20.0.10, or 21... | 2.7 - LOW | 2021-06-01 | 2022-10-26 |
| CVE-2021-22915 | Nextcloud server before 19.0.11, 20.0.10, 21.0.2 is vulnerable to brute force attacks due to lack of inclusion of IPv6 subnet... | 9.8 - CRITICAL | 2021-06-11 | 2023-11-07 |
| CVE-2021-22878 | Nextcloud Server prior to 20.0.6 is vulnerable to reflected cross-site scripting (XSS) due to lack of sanitization in `OC.Not... | 4.8 - MEDIUM | 2021-03-03 | 2023-11-07 |
| CVE-2021-22877 | A missing user check in Nextcloud prior to 20.0.6 inadvertently populates a user's own credentials for other users external s... | 6.5 - MEDIUM | 2021-03-03 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Nextcloud | Nextcloud Server | 9.1.3 | All | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.3 | rc1 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.2 | All | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.2 | rc1 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.2 | rc2 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.1 | All | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.1 | rc1 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.1 | rc2 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.1 | rc3 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.0 | All | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.0 | beta1 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.0 | beta2 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.0 | rc1 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.0 | rc2 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.0 | rc3 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.1.0 | rc4 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.0.7 | All | All | All |
| Application | Nextcloud | Nextcloud Server | 9.0.7 | rc1 | All | All |
| Application | Nextcloud | Nextcloud Server | 9.0.6 | All | All | All |
| Application | Nextcloud | Nextcloud Server | 9.0.6 | rc1 | All | All |