Loading HuntDB...

[Nextcloud 9.0.53] Content Spoofing in 'trustDomain' parameter

N
Nextcloud
Submitted None

Team Summary

Official summary from Nextcloud

@ahsantahir reported a low severity content spoofing vulnerability in an administrative component. We've mitigated the issue as a hardening in our upcoming Nextcloud 11 release and would like to thank @ahsantahir for reporting this issue to us. On request of the reporter this issue is only disclosed with limited visibility.

Reported by ahsan

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Violation of Secure Design Principles