Guests
Nextcloud · 2 CVEs
CVE-2024-22402
MEDIUM
Improper handling of request URLs in Nextcloud Guests app allows guest users to bypass app allowlist
Jan 18, 2024
CVE-2024-22401
MEDIUM
All users can reset the allowed apps list for Nextcloud Guest App users
Jan 18, 2024
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2024-22402 | Improper handling of request URLs in Nextcloud Guests app allows guest users to bypass app allowlist | MEDIUM | 0.51% | Jan 18, 2024 |
| CVE-2024-22401 | All users can reset the allowed apps list for Nextcloud Guest App users | MEDIUM | 0.46% | Jan 18, 2024 |
Showing 1 to 2 of 2 CVEs