VYPR

Groupfolders

by Nextcloud

CVEs (5)

  • CVE-2020-8153HigMay 12, 2020
    risk 0.53cvss 8.1epss 0.02

    Improper access control in Groupfolders app 4.0.3 allowed to delete hidden directories when when renaming an accessible item to the same name.

  • CVE-2026-45264MedJun 1, 2026
    risk 0.21cvss 4.3epss 0.00

    Nextcloud is an open source content collaboration platform. From versions 17.0.0 to before 17.0.15, 18.0.0 to before 18.1.12, 19.0.0 to before 19.1.16, 20.0.0 to before 20.1.11, and 21.0.0 to before 21.0.4, a user with READ and CREATE permission, but no UPDATE permission for a…

  • CVE-2025-66545LowDec 5, 2025
    risk 0.00cvss 3.5epss 0.00

    Nextcloud Groupfolders provides admin-configured folders shared by everyone in a group or team. Prior to 14.0.11, 15.3.12, 16.0.15, 17.0.14, 18.1.8, 19.1.8, and 20.1.2, a user with read-only permission can restore a file from the trash bin. This vulnerability is fixed in…

  • CVE-2025-47793MedMay 16, 2025
    risk 0.00cvss 4.3epss 0.01

    Nextcloud Server is a self hosted personal cloud system, and the Nextcloud Groupfolders app provides admin-configured folders shared by everyone in a group or team. In Nextcloud Server prior to 30.0.2, 29.0.9, and 28.0.1, Nextcloud Enterprise Server prior to 30.0.2 and 29.0.9,…

  • CVE-2021-41241MedMar 8, 2022
    risk 0.00cvss 4.3epss 0.01

    Nextcloud server is a self hosted system designed to provide cloud style services. The groupfolders application for Nextcloud allows sharing a folder with a group of people. In addition, it allows setting "advanced permissions" on subfolders, for example, a user could be granted…