CVE-2024-37317
14.06.2024, 16:15
The Nextcloud Notes app is a distraction free notes taking app for Nextcloud. If an attacker managed to share a folder called `Notes/` with a newly created user before they logged in, the Notes app would use that folder store the personal notes. It is recommended that the Nextcloud Notes app is upgraded to 4.9.3.Enginsight
| Vendor | Product | Version |
|---|---|---|
| nextcloud | notes | 4.6.0 ≤ 𝑥 < 4.9.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References