CVE-2021-22878
03.03.2021, 18:15
Nextcloud Server prior to 20.0.6 is vulnerable to reflected cross-site scripting (XSS) due to lack of sanitization in `OC.Notification.show`.
Vendor | Product | Version |
---|---|---|
nextcloud | nextcloud_server | 𝑥 < 20.0.6 |
𝑥
= Vulnerable software versions
References