Vulnerabilities
Vulnerable Software
Nextcloud:  >> Desktop  >> 3.14.1  Security Vulnerabilities
Nextcloud Desktop is the desktop sync client for Nextcloud. In versions of Nextcloud Desktop prior to 3.15, 3rdparty applications already installed on a user machine can create link shares for almost all data via the socket API. These shares can then be easily sent off to an external service. Nextcloud Desktop fixes the issue in version 3.15. No known workarounds are available.
CVSS Score
5.0
EPSS Score
0.0
Published
2025-05-16
The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server with your computer. The Desktop client did not stop with an error but allowed by-passing the signature validation, if a manipulated server sends an empty initial signature. It is recommended that the Nextcloud Desktop client is upgraded to 3.14.2 or later.
CVSS Score
4.2
EPSS Score
0.005
Published
2024-11-15


Contact Us

Shodan ® - All rights reserved