VYPR
Low severity3.0NVD Advisory· Published Nov 15, 2024· Updated Jun 17, 2026

CVE-2024-52516

CVE-2024-52516

Description

Nextcloud Server is a self hosted personal cloud system. When a server is configured to only allow sharing with users that are in ones own groups, after a user was removed from a group, previously shared items were not unshared. It is recommended that the Nextcloud Server is upgraded to 22.2.11 or 23.0.11 or 24.0.6 and Nextcloud Enterprise Server is upgraded to 22.2.11 or 23.0.11 or 24.0.6.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Nextcloud/Server2 versions
    cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:*:*:*:*range: >=28.0.0,<28.0.9
    • cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:enterprise:*:*:*range: >=26.0.0,<26.0.13.9
  • Range: up to 22.2.11 or 23.0.11 or 24.0.6
  • Range: >= 28.0.0, < 28.0.9

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.