Lucene search

K
osvGoogleOSV:CVE-2021-32652
HistoryJun 01, 2021 - 7:15 p.m.

CVE-2021-32652

2021-06-0119:15:07
Google
osv.dev
5
nextcloud mail
permission check
authenticated users
mail metadata
vulnerability
patch

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

21.4%

Nextcloud Mail is a mail app for the Nextcloud platform. A missing permission check in Nextcloud Mail before 1.4.3 and 1.8.2 allows another authenticated users to access mail metadata of other users. Versions 1.4.3 and 1.8.2 contain patches for this vulnerability; no workarounds other than the patches are known to exist.

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

21.4%

Related for OSV:CVE-2021-32652