CVE-2024-52516
Nextcloud Server is a self hosted personal cloud system. When a server is configured to only allow sharing with users that are in ones own groups, after a user was removed from a group, previously shared items were not unshared. It is recommended that the Nextcloud Server is upgraded to 22.2.11 or 23.0.11 or 24.0.6 and Nextcloud Enterprise Server is upgraded to 22.2.11 or 23.0.11 or 24.0.6.
- Affected products
- Alt Linux, Nextcloud Enterprise Server, Nextcloud Server, Red Os
- Nextcloud Nextcloud Server
- < 26.0.13.9, 27.1.11.9, 28.0.9, 29.0.5
- Fix
- Available
- CVSS 3.1
- 4.3 MEDIUM
- EPSS
- 0.4% (34th percentile)
- Weakness
- CWE-269
- NVD status
- Analyzed
- Published
- 2024-11-15
CVE-2024-52516 at NVD
No indexed exploits for CVE-2024-52516 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2024-52516 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.