| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2022-29159 | Possibility for anyone to add a stack with existing tasks on anyone's board in Nextcloud Deck | nextcloud | security-advisories | Medium | 5.0 | 2022-05-20 15:40:10 | Deep Dive |
| CVE-2022-24890 | Exposure of Private Personal Information to an Unauthorized Actor in Nextcloud Talk | nextcloud | security-advisories | Low | 2.4 | 2022-05-17 19:00:15 | Deep Dive |
| CVE-2022-24889 | Insufficient Verification of Data Authenticity in Nextcloud Server | nextcloud | security-advisories | Low | 2.4 | 2022-04-27 14:35:13 | Deep Dive |
| CVE-2022-24888 | Possible Injection in Nextcloud Server | nextcloud | security-advisories | Medium | 4.3 | 2022-04-27 14:25:11 | Deep Dive |
| CVE-2022-24887 | Open Redirect in Nextcloud Talk | nextcloud | security-advisories | Medium | 4.3 | 2022-04-27 13:55:11 | Deep Dive |
| CVE-2022-24886 | Exposure of Sensitive Information to an Unauthorized Actor in com.nextcloud.client | nextcloud | security-advisories | Low | 2.2 | 2022-04-27 13:30:14 | Deep Dive |
| CVE-2022-24885 | Improper Authentication in Nextcloud Android Files | nextcloud | security-advisories | Low | 2.0 | 2022-04-27 13:20:11 | Deep Dive |
| CVE-2022-24838 | Command Injection in Appointment Emails for Nextcloud Calendar | nextcloud | security-advisories | Medium | 5.3 | 2022-04-11 20:25:13 | Deep Dive |
| CVE-2021-41233 | Missing authorization in Nextcloud text | nextcloud | security-advisories | Medium | 6.5 | 2022-03-10 20:30:11 | Deep Dive |
| CVE-2022-24741 | High memory usage in Nextcloud server | nextcloud | security-advisories | Low | 3.5 | 2022-03-09 21:30:13 | Deep Dive |
| CVE-2021-41241 | Advanced permissions is not respected for subfolders in Nextcloud server | nextcloud | security-advisories | Medium | 4.3 | 2022-03-08 18:25:10 | Deep Dive |
| CVE-2021-41239 | User enumeration setting not respected in Nextcloud server | nextcloud | security-advisories | Medium | 5.3 | 2022-03-08 18:05:12 | Deep Dive |
| CVE-2021-41181 | Nextcloud Talk app exposes chat messages on lockscreen | nextcloud | security-advisories | Low | 2.4 | 2022-03-08 17:50:10 | Deep Dive |
| CVE-2021-41180 | Geolocation preview links can be set to arbitrary links in nextcloud talk | nextcloud | security-advisories | Medium | 4.7 | 2022-03-08 17:45:12 | Deep Dive |
| CVE-2021-41166 | Permission bypass in Nextcloud Android App | nextcloud | security-advisories | Medium | 4.3 | 2022-01-26 22:35:10 | Deep Dive |
| CVE-2021-43863 | SQL Injection in FileContentProvider (GHSL-2021-1007) | nextcloud | android | High | 7.5 | 2022-01-25 15:25:11 | Deep Dive |
| CVE-2021-41256 | Intent URI permissions manipulation in nextcloud news-android | nextcloud | news-android | Medium | 5.8 | 2021-11-30 20:55:09 | Deep Dive |
| CVE-2021-39222 | XSS in Talk | nextcloud | security-advisories | Medium | 6.4 | 2021-11-15 18:30:13 | Deep Dive |
| CVE-2021-41179 | Two-Factor Authentication not enforced for pages marked as public | nextcloud | security-advisories | Medium | 6.5 | 2021-10-25 22:00:13 | Deep Dive |
| CVE-2021-41178 | File Traversal affecting SVG files on Nextcloud Server | nextcloud | security-advisories | High | 8.8 | 2021-10-25 21:55:11 | Deep Dive |