Nextcloud Tables vulnerabilities
5 known vulnerabilities affecting nextcloud/tables.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM5
Vulnerabilities
Page 1 of 1
CVE-2025-66551MEDIUMCVSS 4.3≥ 0.4.0, < 0.8.6≥ 0.9.0, < 0.9.32025-12-05
CVE-2025-66551 [MEDIUM] CWE-639 CVE-2025-66551: Nextcloud Tables allows you to create your own tables with individual columns. Prior to 0.8.6 and 0.
Nextcloud Tables allows you to create your own tables with individual columns. Prior to 0.8.6 and 0.9.3, a malicious user was able to create their own table and then move a column to a victims table. This vulnerability is fixed in 0.8.6 and 0.9.3.
nvd
CVE-2025-66513MEDIUMCVSS 5.3≥ 0.6.0, < 0.8.9≥ 0.9.0, < 0.9.6+1 more2025-12-05
CVE-2025-66513 [MEDIUM] CWE-639 CVE-2025-66513: Nextcloud Tables allows you to create your own tables with individual columns. Prior to 0.8.9, 0.9.6
Nextcloud Tables allows you to create your own tables with individual columns. Prior to 0.8.9, 0.9.6, and 1.0.1, the information which table (numeric ID) is shared with which groups or users and the respective permissions was not limited to privileged users. This vulnerability is fixed in 0.8.9, 0.9.6, and 1.0.1.
nvd
CVE-2025-66553MEDIUMCVSS 4.3≥ 0.8.0, < 0.8.7≥ 0.9.0, < 0.9.42025-12-05
CVE-2025-66553 [MEDIUM] CWE-639 CVE-2025-66553: Nextcloud Tables allows you to create your own tables with individual columns. Prior to 0.8.7 and 0.
Nextcloud Tables allows you to create your own tables with individual columns. Prior to 0.8.7 and 0.9.4, authenticated users were able to view meta data of columns in other tables of the Tables app by modifying the numeric ID in a request. This vulnerability is fixed in 0.8.7 and 0.9.4.
nvd
CVE-2024-52511MEDIUMCVSS 6.5≥ 0.6.0, < 0.8.02024-11-15
CVE-2024-52511 [MEDIUM] CWE-639 CVE-2024-52511: Nextcloud Tables allows users to to create tables with individual columns. By directly specifying th
Nextcloud Tables allows users to to create tables with individual columns. By directly specifying the ID of a table or view, a malicious user could blindly insert new rows into tables they have no access to. It is recommended that the Nextcloud Tables is upgraded to 0.8.0.
nvd
CVE-2024-52507MEDIUMCVSS 4.3≥ 0.3.0, < 0.8.12024-11-15
CVE-2024-52507 [MEDIUM] CWE-639 CVE-2024-52507: Nextcloud Tables allows users to to create tables with individual columns. The information which Tab
Nextcloud Tables allows users to to create tables with individual columns. The information which Table (numeric ID) is shared with which groups and users and the respective permissions was not limited to affected users. It is recommended that the Nextcloud Tables app is upgraded to 0.8.1.
nvd