Nextcloud / Tables
8 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-45722 | Nextcloud: Tables app allows limited SQLi in ORDER BY with malicious sort order argument for Table Views | HIGH | 7.1 | Jun 1, 2026 |
| CVE-2026-45545 | Nextcloud: SQL Injection in Column Type Parameter Allows Arbitrary SQL Execution | HIGH | 8.2 | Jun 1, 2026 |
| CVE-2026-45544 | Nextcloud: Information Disclosure of view filter metdata via Broken Sensitive Data Masking in ViewService | MEDIUM | 4.3 | Jun 1, 2026 |
| CVE-2025-66553 | Nextcloud Tables app allowed users to view columns metadata information of any table | MEDIUM | 4.3 | Dec 5, 2025 |
| CVE-2025-66551 | Nextcloud Tables is missing an ownership check which allows moving columns into tables of other users | MEDIUM | 6.3 | Dec 5, 2025 |
| CVE-2025-66513 | Nextcloud Tables app share information not limited to relevant users | MEDIUM | 5.3 | Dec 5, 2025 |
| CVE-2024-52507 | Share information of the Nextcloud Tables app is not limited to affected users | MEDIUM | 4.3 | Nov 15, 2024 |
| CVE-2024-52511 | Nextcloud Tables has an Authorization Bypass Through User-Controlled Key in Tables | MEDIUM | 6.5 | Nov 15, 2024 |
Showing 1 to 8 of 8 CVEs