{"id":"CVE-2026-45544","title":"Nextcloud is an open source content collaboration platform","summary":"Nextcloud is an open source content collaboration platform. From version 0.8.0 to before version 1.0.4, the view filter criteria is exposed to users with read-only permissions in Nextcloud Tables. This issue has been patched in versions …","severity":"medium","cvss":4.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N","cwe":["CWE-1230"],"vendor":"nextcloud","product":"tables","affected":["tables >= 0.8.0, < 1.0.4"],"patched":["tables 1.0.4"],"published":"2026-06-01","updated":"2026-07-22","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-45544","references":[{"url":"https://github.com/nextcloud/security-advisories/security/advisories/GHSA-vvxm-6jjp-m9mp","label":"security-advisories@github.com"},{"url":"https://github.com/nextcloud/tables/pull/2312","label":"security-advisories@github.com"},{"url":"https://hackerone.com/reports/3483753","label":"security-advisories@github.com"}],"tags":["nvd"],"epss":0.00222,"epssPercentile":0.12956,"ingestedAt":"2026-07-23T07:14:46.501Z","slug":"CVE-2026-45544","body":"## Overview\n\nNextcloud is an open source content collaboration platform. From version 0.8.0 to before version 1.0.4, the view filter criteria is exposed to users with read-only permissions in Nextcloud Tables. This issue has been patched in versions 1.0.4 and 2.0.0.\n\n## Affected\n\n- `tables >= 0.8.0, < 1.0.4`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `tables 1.0.4`","depth":"sunlit","depthScore":24,"depthScoreParts":{"impact":23.7,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}