Low severity3.8NVD Advisory· Published Jun 14, 2024· Updated Jun 17, 2026
CVE-2024-37885
CVE-2024-37885
Description
The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server with your computer. A code injection in Nextcloud Desktop Client for macOS allowed to load arbitrary code when starting the client with DYLD_INSERT_LIBRARIES set in the enviroment. It is recommended that the Nextcloud Desktop client is upgraded to 3.12.0.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: before 3.12.0
- Range: < 3.12.0
Patches
Vulnerability mechanics
References
3- github.com/nextcloud/desktop/pull/6378nvdPatch
- github.com/nextcloud/security-advisories/security/advisories/GHSA-4mf7-v63m-99p7nvdPatchThird Party Advisory
- hackerone.com/reports/2307625nvdIssue Tracking
News mentions
0No linked articles in our index yet.