CVE-2024-37316

Nextcloud Calendar is a calendar app for Nextcloud. Authenticated users could create an event with manipulated attachment data leading to a bad redirect for participants when clicked. It is recommended that the Nextcloud Calendar App is upgraded to 4.6.8 or 4.7.2.
Configurations

No configuration.

History

No history.

Information

Published : 2024-06-14 16:15

Updated : 2024-06-17 12:42


NVD link : CVE-2024-37316

Mitre link : CVE-2024-37316

CVE.ORG link : CVE-2024-37316


JSON object : View

Products Affected

No product.

CWE
CWE-241

Improper Handling of Unexpected Data Type