Low severity3.5NVD Advisory· Published Dec 5, 2025· Updated Jun 17, 2026
CVE-2025-66556
CVE-2025-66556
Description
Nextcloud talk is a video & audio conferencing app for Nextcloud. Prior to 20.1.8 and 21.1.2, a participant with chat permissions was able to delete poll drafts of other participants within the conversation based on their numeric ID. This vulnerability is fixed in 20.1.8 and 21.1.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: < 20.1.8
Patches
Vulnerability mechanics
References
4- github.com/nextcloud/security-advisories/security/advisories/GHSA-pr9f-vqgg-m2jhnvdPatchVendor Advisory
- github.com/nextcloud/spreed/commit/bd68e80d1dea98d84c1d621c2c681238cf041725nvdPatch
- github.com/nextcloud/spreed/pull/15532nvdIssue TrackingPatch
- hackerone.com/reports/3247386nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.