Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 09 Dec 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:nextcloud:talk:*:*:*:*:*:*:*:* |
Tue, 09 Dec 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nextcloud
Nextcloud talk |
|
| Vendors & Products |
Nextcloud
Nextcloud talk |
Fri, 05 Dec 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Nextcloud talk is a video & audio conferencing app for Nextcloud. Prior to 20.1.8 and 21.1.2, a participant with chat permissions was able to delete poll drafts of other participants within the conversation based on their numeric ID. This vulnerability is fixed in 20.1.8 and 21.1.2. | |
| Title | Nextcloud talk allows participants to blindly delete poll drafts of other users by ID | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-12-05T18:09:34.326Z
Reserved: 2025-12-04T16:01:32.472Z
Link: CVE-2025-66556
Updated: 2025-12-05T18:09:05.662Z
Status : Analyzed
Published: 2025-12-05T18:15:58.803
Modified: 2025-12-09T16:52:34.963
Link: CVE-2025-66556
No data.
OpenCVE Enrichment
Updated: 2025-12-08T09:39:47Z