Nixpkgs security tracker

Login with GitHub

Suggestion detail

Dismissed
updated 5 months, 1 week ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse ignored package owncloud-client
  • @LeSuisse dismissed
Cross-site scripting (XSS) vulnerability in ownCloud 4.5.5, 4.0.10, and earlier …

Cross-site scripting (XSS) vulnerability in ownCloud 4.5.5, 4.0.10, and earlier allows remote attackers to inject arbitrary web script or HTML via the action parameter to core/ajax/sharing.php.

Affected products

ownCloud
  • ==4.5.5
  • ==4.0.10
  • ==and earlier
Ignored packages (1)

pkgs.owncloud-client

Synchronise your ownCloud with your computer using this desktop client

Not present in nixpkgs