Nextcloud
Nextcloud Circles: vulnerabilidades y CVE
Nextcloud Circles tiene 4 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses1
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-77164 | Media (6.2) | 0.19% | — | 18 sept 2026 | Circles' remote-instance signature verification fetches the attacker-supplied keyId URL before trust in the remote instance is established, and explicitly allows local/private addresses for this request, bypassing… |
| CVE-2021-37630 | Media (6.5) | 1.2% | — | 7 sept 2021 | Nextcloud Circles is an open source social network built for the nextcloud ecosystem. In affected versions the Nextcloud Circles application allowed any user to join any "Secret Circle" without approval by the Circle… |
| CVE-2021-32782 | Media (5.4) | 0.83% | — | 7 sept 2021 | Nextcloud Circles is an open source social network built for the nextcloud ecosystem. In affected versions the Nextcloud Circles application is vulnerable to a stored Cross-Site Scripting (XSS) vulnerability. Due the… |
| CVE-2019-15610 | Media (4.3) | 0.83% | — | 4 feb 2020 | Improper authorization in the Circles app 0.17.7 causes retaining access when an email address was removed from a circle. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.