Nextcloud Tables allows you to create your own tables with individual columns. Prior to 0.8.9, 0.9.6, and 1.0.1, the information which table (numeric ID) is shared with which groups or users and the respective permissions was not limited to privileged users. This vulnerability is fixed in 0.8.9, 0.9.6, and 1.0.1.
History

Fri, 05 Dec 2025 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Nextcloud
Nextcloud tables
Vendors & Products Nextcloud
Nextcloud tables

Fri, 05 Dec 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 05 Dec 2025 17:30:00 +0000

Type Values Removed Values Added
Description Nextcloud Tables allows you to create your own tables with individual columns. Prior to 0.8.9, 0.9.6, and 1.0.1, the information which table (numeric ID) is shared with which groups or users and the respective permissions was not limited to privileged users. This vulnerability is fixed in 0.8.9, 0.9.6, and 1.0.1.
Title Nextcloud Tables app share information not limited to relevant users
Weaknesses CWE-639
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2025-12-05T17:11:19.774Z

Updated: 2025-12-05T18:46:33.645Z

Reserved: 2025-12-03T15:28:02.992Z

Link: CVE-2025-66513

cve-icon Vulnrichment

Updated: 2025-12-05T18:46:23.306Z

cve-icon NVD

Status : Received

Published: 2025-12-05T18:15:57.290

Modified: 2025-12-05T18:15:57.290

Link: CVE-2025-66513

cve-icon Redhat

No data.