Security Advisory

CVE-2021-22896

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-11 15:49:38
Last updated 2024-08-03 18:58:25
Assigner hackerone
State PUBLISHED

Description

Nextcloud Mail before 1.9.5 suffers from improper access control due to a missing permission check allowing other authenticated users to create mail aliases for other users.