CVE-2021-22895

Publication date

2021-06-11 15:49:38

Family

hackerone

State

PUBLISHED

Description

Nextcloud Desktop Client before 3.3.1 is vulnerable to improper certificate validation due to lack of SSL certificate verification when using the "Register with a Provider" flow.