Lucene search

K
hackeroneDemoniaH1:1018146
HistoryOct 25, 2020 - 4:00 a.m.

Nextcloud: Potential DDoS when posting long data into workflow validation rules

2020-10-2504:00:29
demonia
hackerone.com
56

0.001 Low

EPSS

Percentile

35.0%

A missing input validation in Nextcloud Server 20.0.1 allowed users to store unlimited data in workflow rules causing load and potential DDoS on later interactions and usage with those rules.

0.001 Low

EPSS

Percentile

35.0%