📦 Deck

by Nextcloud

🔍 What is Deck?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-39225

HIGH CVSS 8.1 Oct 25, 2021

CVE-2021-39225 is an authorization bypass vulnerability in Nextcloud Deck that allows authenticated users to access other users' Deck cards without proper permission checks. This affects Nextcloud ins...

CVE-2025-66557

MEDIUM CVSS 5.4 Dec 5, 2025

This vulnerability in Nextcloud Deck allows users with 'Can share' permission to modify permissions of other recipients, potentially escalating privileges within shared boards. It affects all Nextclou...

CVE-2024-37883

MEDIUM CVSS 4.3 Jun 14, 2024

This vulnerability in Nextcloud Deck allows users with access to a deck board to view comments and attachments from deleted cards, bypassing intended access controls. It affects all Nextcloud instance...

CVE-2025-66548

LOW CVSS 3.3 Dec 5, 2025

This vulnerability in Nextcloud Deck allows attackers to spoof file extensions using Right-to-Left Override (RTLO) characters, tricking users into downloading files with different extensions than disp...