Filtered by vendor Nextcloud Subscriptions
Filtered by product Social Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-8278 1 Nextcloud 1 Social 2020-12-02 5.3 Medium
Improper access control in Nextcloud Social app version 0.3.1 allowed to read posts of any user.
CVE-2020-8279 1 Nextcloud 1 Social 2020-11-25 7.4 High
Missing validation of server certificates for out-going connections in Nextcloud Social < 0.4.0 allowed a man-in-the-middle attack.