A missing input validation in Nextcloud Server before 20.0.2, 19.0.5, 18.0.11 allows users to store unlimited data in workflow rules causing load and potential DDoS on later interactions and usage with those rules.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: hackerone

Published: 2021-01-26T16:33:25

Updated: 2024-08-04T09:56:28.329Z

Reserved: 2020-01-28T00:00:00

Link: CVE-2020-8293

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-01-26T18:16:08.507

Modified: 2022-09-27T15:46:14.307

Link: CVE-2020-8293

cve-icon Redhat

No data.