Sploitus

CVE-2025-66547

No indexed exploits for CVE-2025-66547 yet

Nextcloud Server is a self hosted personal cloud system. In Nextcloud Server and Enterprise Server prior to 31.0.1, non-privileged users can modify tags on files they should not have access to via bulk tagging. This vulnerability is fixed in 31.0.1.

Nextcloud Nextcloud Server
< 31.0.1
Fix
Available
CVSS 3.1
4.3 MEDIUM
EPSS
0.3% (19th percentile)
Weakness
CWE-639
NVD status
Analyzed
Published
2025-12-05
CVE-2025-66547 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2025-66547 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2025-66547 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.