CVE-2025-66549 - Nextcloud Desktop discloses information when attempting to lock a file inside a ...

CVE-2025-66549 - Nextcloud Desktop discloses information when attempting to lock a file inside a ...

CVE ID : CVE-2025-66549 Published : Dec. 5, 2025, 6:15 p.m. | 47 minutes ago Description : Nextcloud Desktop is the desktop sync client for Nextcloud. Prior to 3.16.5, when trying to manually lock a file inside an end-to-end encrypted directory, the path of the file was sent to the server unencrypted, making it possible for administrators to see it in log files. This vulnerability is fixed in 3.16.5. Severity: 2.4 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
LOW
Published
Dec. 5, 2025

Source: Telegram CVE Monitor