Vulnerability in Nextcloud Tables Exposes View Filter Criteria to Unauthorized Users
CVE-2026-45544

4.3MEDIUM

Key Information:

Vendor

Nextcloud

Vendor
CVE Published:
1 June 2026

What is CVE-2026-45544?

A vulnerability in Nextcloud's Tables application exposes view filter criteria to users with read-only permissions, potentially compromising the confidentiality of sensitive data. This issue affects versions from 0.8.0 to prior to 1.0.4 and has been addressed in the latest releases. Users are advised to update their installations to ensure complete protection against unauthorized data access.

Affected Version(s)

security-advisories >= 0.8.0, < 1.0.4

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.