CVE-2021-22895

Published
View on NVD ↗
CVSS v3
5.9
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
2
PROJECTS

Description

Nextcloud Desktop Client before 3.3.1 is vulnerable to improper certificate validation due to lack of SSL certificate verification when using the "Register with a Provider" flow.

👮 Security advisories of Nextcloud
GitHubGitHub
75
💻 Desktop sync client for Nextcloud
GitHubGitHub
3.73K