Known Vulnerabilities for Social by Nextcloud
Listed below are 2 of the newest known vulnerabilities associated with "Social" by "Nextcloud".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-53675 json | BuddyPress 14.4.0 contains an insecure direct object reference vulnerability in the friends REST API that allows any authenti... | Not Provided | 2026-06-10 | 2026-06-10 |
| CVE-2026-48783 json | Postiz is an AI social media scheduling tool. Versions prior to 2.21.8 contained an unauthenticated endpoint that accepted a ... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-48781 json | Postiz is an AI social media scheduling tool. In versions prior to 2.21.8, the Skool integration callback signed an attacker-... | Not Provided | 2026-06-17 | 2026-06-18 |
| CVE-2026-47777 json | Mastodon is a free, open-source social network server based on ActivityPub. In versions there is a missing condition in the c... | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-45335 json | WeGIA is a web manager for charitable institutions. Prior to 3.7.3, an Open Redirect vulnerability was identified in the /WeG... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-44590 json | Sherlock hunts down social media accounts by username across social networks. Prior to 0.16.1, the GitHub Actions workflow va... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-42556 json | Postiz is an AI social media scheduling tool. From version 2.21.6 to before version 2.21.7, any authenticated user who can cr... | Not Provided | 2026-05-08 | 2026-05-13 |
| CVE-2026-42346 json | Postiz is an AI social media scheduling tool. From version 2.16.6 to before version 2.21.7, all SSRF protections added in v2.... | Not Provided | 2026-05-08 | 2026-05-11 |
| CVE-2026-42298 json | Postiz is an AI social media scheduling tool. Prior to commit da44801, a "Pwn Request" vulnerability in the Build and Publish... | Not Provided | 2026-05-08 | 2026-05-11 |
| CVE-2026-41513 json | Horilla is an HR and CRM software. In 1.5.0, the notification endpoints trust the unvalidated next parameter and redirect use... | Not Provided | 2026-05-12 | 2026-05-13 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Nextcloud | Social | 0.4.1 | |||
| Application | Nextcloud | Social | 0.4.0 | |||
| Application | Nextcloud | Social | 0.3.1 | |||
| Application | Nextcloud | Social | 0.2.6 | |||
| Application | Nextcloud | Social | 0.2.5 | |||
| Application | Nextcloud | Social | 0.2.4 | |||
| Application | Nextcloud | Social | 0.2.3 | |||
| Application | Nextcloud | Social | 0.2.2 | |||
| Application | Nextcloud | Social | 0.2.101 | |||
| Application | Nextcloud | Social | 0.2.100 | |||
| Application | Nextcloud | Social | 0.2.1 | |||
| Application | Nextcloud | Social | 0.2.0 | |||
| Application | Nextcloud | Social | 0.1.4 | |||
| Application | Nextcloud | Social | 0.1.3 | |||
| Application | Nextcloud | Social | 0.1.2 | |||
| Application | Nextcloud | Social | 0.1.1 | |||
| Application | Nextcloud | Social | 0.1.0 |