CVE-2024-52513

Published
View on NVD ↗
CVSS v3
2.6
LOW
CVSS v2
N/A
Affected
2
PROJECTS

Description

Nextcloud Server is a self hosted personal cloud system. After receiving a "Files drop" or "Password protected" share link a malicious user was able to download attachments that are referenced in Text files without providing the password. It is recommended that the Nextcloud Server is upgraded to 28.0.11, 29.0.8 or 30.0.1 and Nextcloud Enterprise Server is upgraded to 25.0.13.13, 26.0.13.9, 27.1.11.9, 28.0.11, 29.0.8 or 30.0.1.

👮 Security advisories of Nextcloud
GitHubGitHub
75
📑 Collaborative document editing using Markdown
GitHubGitHub
640