VYPR
Low severity3.5NVD Advisory· Published Mar 9, 2022· Updated Jun 17, 2026

CVE-2022-24741

CVE-2022-24741

Description

Nextcloud server is an open source, self hosted cloud style services platform. In affected versions an attacker can cause a denial of service by uploading specially crafted files which will cause the server to allocate too much memory / CPU. It is recommended that the Nextcloud Server is upgraded to 21.0.8 , 22.2.4 or 23.0.1. Users unable to upgrade should disable preview generation with the 'enable_previews' config flag.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Nextcloud/Server3 versions
    cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:*:*:*:*range: >=21.0.0,<21.0.8
    • cpe:2.3:a:nextcloud:nextcloud_server:23.0.0:*:*:*:*:*:*:*
    • (no CPE)range: before 21.0.8, 22.2.4, or 23.0.1
  • nextcloud/security-advisoriesv5
    Range: < 21.0.8

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.