Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Cloudreve — Vulnerabilities & Security Advisories 14

All 14 CVE vulnerabilities found in Cloudreve, with AI-generated Chinese analysis, references, and POCs.

Vendor: Cloudreve

CVE ID Title CVSS Severity Published
CVE-2026-77637 Cloudreve: Privilege Scope Bypass: State-Mutating Admin Operations Accessible via Read-Only OAuth Scope CWE-862 3.8 Low 2026-09-22
CVE-2026-77633 Cloudreve: Storage-quota TOCTOU race allows quota bypass and storage-based denial of service CWE-362 7.1 High 2026-09-22
CVE-2026-79913 Cloudreve: SSRF guard bypass: checkIP does not decode IPv6-transition wrappers (NAT64, IPv4-compatible, 6to4) reaching internal and cloud-metadata addresses CWE-918 6.5 Medium 2026-09-22
CVE-2026-62323 Cloudreve: Unauthorized file write via WOPI view sessions whose access token secret is ignored CWE-863 6.3 Medium 2026-07-31
CVE-2026-55502 Cloudreve: OAuth Admin.Read scope can update OneDrive storage policy credentials CWE-863 7.1 High 2026-07-31
CVE-2026-55499 Cloudreve: Broken access control in file event stream leaks activity events for unshared siblings to single-file share recipients CWE-863 4.3 Medium 2026-07-31
CVE-2026-55497 Cloudreve: Server crash through image decompression/pixel bomb in thumbnail & avatar decoding (DoS) CWE-400 6.5 Medium 2026-07-31
CVE-2026-55496 Cloudreve: Inactive/banned account emails leaked via GET /api/v4/user/search because SearchActive() omits the active-status predicate CWE-200 4.3 Medium 2026-07-31
CVE-2026-55495 Cloudreve: Path Traversal in WOPI PUT_RELATIVE Allows Arbitrary File Creation in Owner Account CWE-22 4.3 Medium 2026-07-31
CVE-2026-54560 Cloudreve: OAuth access tokens bypass scope enforcement due to missing client_id claim CWE-863 7.6 High 2026-07-15
CVE-2026-54563 Cloudreve: Path Traversal / Broken Access Control in Cloudreve WebDAV (`/dav`) — scoped DAV credential escapes its configured account root CWE-863 7.1 High 2026-07-15
CVE-2026-54562 Cloudreve: Non-admin remote download users can SSRF loopback/internal services and read imported responses CWE-918 6.5 Medium 2026-07-15
CVE-2026-25726 Cloudreve is vulnerable to Account Takeover via Weak Cryptographic Token Generation (Insecure PRNG Seeding) CWE-338 8.1 High 2026-04-03
CVE-2022-32167 Cloudreve - Stored XSS CWE-79 5.4 Medium 2022-09-20

All 14 known CVE vulnerabilities affecting Cloudreve with full Chinese analysis, references, and POCs where available.