Medium severity5.0NVD Advisory· Published May 20, 2022· Updated Jun 17, 2026
CVE-2022-29159
CVE-2022-29159
Description
Nextcloud Deck is a Kanban-style project & personal management tool for Nextcloud. In versions prior to 1.4.8, 1.5.6, and 1.6.1, an authenticated user can move stacks with cards from their own board to a board of another user. The Nextcloud Deck app contains a patch for this issue in versions 1.4.8, 1.5.6, and 1.6.1. There are no known currently-known workarounds available.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- nextcloud/security-advisoriesv5Range: < 1.4.8
Patches
Vulnerability mechanics
References
3- github.com/nextcloud/deck/pull/3541nvdIssue TrackingPatchThird Party Advisory
- github.com/nextcloud/security-advisories/security/advisories/GHSA-vqhf-673w-7r3jnvdExploitIssue TrackingThird Party Advisory
- hackerone.com/reports/1450117nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.