Medium severity4.3NVD Advisory· Published Feb 25, 2023· Updated Jun 17, 2026
CVE-2023-25816
CVE-2023-25816
Description
Nextcloud is an Open Source private cloud software. Versions 25.0.0 and above, prior to 25.0.3, are subject to Uncontrolled Resource Consumption. A user can configure a very long password, consuming more resources on password validation than desired. This issue is patched in 25.0.3 No workaround is available.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: >= 25.0.0, < 25.0.3
Patches
Vulnerability mechanics
References
3- github.com/nextcloud/server/pull/35965nvdPatch
- hackerone.com/reports/1820864nvdExploitMitigationThird Party Advisory
- github.com/nextcloud/security-advisories/security/advisories/GHSA-53q2-cm29-7j83nvdVendor Advisory
News mentions
0No linked articles in our index yet.