Loading HuntDB...

Arbitrary read of all SVG files on a Nextcloud server

High
N
Nextcloud
Submitted None

Team Summary

Official summary from Nextcloud

Security advisory at https://github.com/nextcloud/security-advisories/security/advisories/GHSA-jp9c-vpr3-m5rf

Reported by bncrypted

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Bounty

$1250.00

Submitted

Weakness

Path Traversal