CVE-2026-45279
Last modified
CVE-2026-45279 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 31.0.0 to before 31.0.14, and 32.0.0 to before 32.0.4, if {lang} is used in the template directory config value, non-admin users can in some cases copy arbitrary files (depending on unix permissions) into their own Nextcloud directory via a path traversal. EPSS estimates a 0.39% chance of exploitation in the next 30 days.
Description
Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 31.0.0 to before 31.0.14, and 32.0.0 to before 32.0.4, if {lang} is used in the template directory config value, non-admin users can in some cases copy arbitrary files (depending on unix permissions) into their own Nextcloud directory via a path traversal. It is recommended that the Nextcloud Server is upgraded to 32.0.4, 31.0.14. It is recommended that the Nextcloud Enterprise Server is upgraded to 32.0.4, 31.0.14, 30.0.17.7, 29.0.17.12, 28.0.14.15
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Nextcloud | Nextcloud Server | >= 31.0.0, < 31.0.14 |
| Nextcloud | Nextcloud Server | >= 32.0.0, < 32.0.4 |
| Nextcloud | Nextcloud Server | >= 28.0.0, < 28.0.14.15 |
| Nextcloud | Nextcloud Server | >= 29.0.0, < 29.0.17.12 |
| Nextcloud | Nextcloud Server | >= 30.0.0, < 30.0.17.7 |
References
- https://github.com/nextcloud/security-advisories/security/advisories/GHSA-j33j-qph5-4wchMitigation, Vendor Advisory
- https://github.com/nextcloud/server/pull/57414/filesIssue Tracking, Patch
- https://hackerone.com/reports/3468140Permissions Required
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-45279?
How severe is CVE-2026-45279?
How do I fix CVE-2026-45279?
Are you affected by CVE-2026-45279?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
