Filtered by vendor Nextcloud Subscriptions
Filtered by product End-to-end Encryption Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-22906 1 Nextcloud 1 End-to-end Encryption 2024-08-03 6.5 Medium
Nextcloud End-to-End Encryption before 1.5.3, 1.6.3 and 1.7.1 suffers from a denial of service vulnerability due to permitting any authenticated users to lock files of other users.
CVE-2023-35173 1 Nextcloud 1 End-to-end Encryption 2024-08-02 5.7 Medium
Nextcloud End-to-end encryption app provides all the necessary APIs to implement End-to-End encryption on the client side. By providing an invalid meta data file, an attacker can make previously dropped files inaccessible. It is recommended that the Nextcloud End-to-end encryption app is upgraded to version 1.12.4 that contains the fix.