Fedora Account System
Red Hat Associate
Red Hat Customer
Due to an issue with the Nextcloud Text application, which is by default shipped with Nextcloud Server, an attacker is able to access the folder names of "File Drop". For successful exploitation an attacker requires knowledge of the sharing link. Users unable to upgrade should disable the Nextcloud Text application in the application settings. Reference: https://github.com/nextcloud/text/pull/1884 https://github.com/nextcloud/security-advisories/security/advisories/GHSA-26c8-35cm-xq9m
Created nextcloud tracking bugs for this issue: Affects: fedora-all [bug 2063894]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.