CNNVD-202512-659 Information

CNNVD ID

CNNVD-202512-659

CVE-2025-66552

  • CNNVD Published: 2025-12-05

Description (Chinese)

Nextcloud Server是Nextcloud开源的一个Nextcloud服务器程序。 Nextcloud Server存在安全漏洞,该漏洞源于组文件夹路径处理不当,可能导致日志记录不全。

Description (English)

Nextcloud Server is a Nextcloud server that is an open source for Nextcloud. Nextcloud Server has a security loophole, which stems from the mishandling of the group folder path, which may lead to incomplete log records.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Nextcloud

Published

2025-12-05

Last Modified

2026-02-24

References

https://github.com/nextcloud/security-advisories/security/advisories/GHSA-ww9m-f8j4-jj9x https://github.com/nextcloud/server/commit/7cc005c43c72bc384848cf8cb851895827c412f6 https://github.com/nextcloud/server/pull/50992 https://hackerone.com/reports/2890071

Patch

https://nextcloud.com/install/

Share on: