VYPR
Low severity3.5NVD Advisory· Published Jun 14, 2024· Updated Jun 17, 2026

CVE-2024-37887

CVE-2024-37887

Description

Nextcloud Server is a self hosted personal cloud system. Private shared calendar events' recurrence exceptions can be read by sharees. It is recommended that the Nextcloud Server is upgraded to 27.1.10 or 28.0.6 or 29.0.1 and that the Nextcloud Enterprise Server is upgraded to 27.1.10 or 28.0.6 or 29.0.1.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • Nextcloud/Server4 versions
    cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:-:*:*:*+ 3 more
    • cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:-:*:*:*range: >=27.0.0,<27.1.10
    • cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:enterprise:*:*:*range: >=27.0.0,<27.1.10
    • cpe:2.3:a:nextcloud:nextcloud_server:29.0.0:-:*:*:-:*:*:*
    • cpe:2.3:a:nextcloud:nextcloud_server:29.0.0:-:*:*:enterprise:*:*:*
  • Range: up to 27.1.10, 28.0.6, or 29.0.1
  • Range: >= 27.0.0, < 27.1.10

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.