icon

We found results for “

CVE-2025-66552

Good to know:

icon
icon

Date: December 5, 2025

Nextcloud Server is a self hosted personal cloud system. In Nextcloud Server and Enterprise Server prior to 30.0.9 and 31.0.1, incorrect path handling with groupfolders caused the admin_audit app to not properly log all actions on files and folders inside groupfolders. This vulnerability is fixed in Nextcloud Server and Enterprise Server prior to 30.0.9 and 31.0.1.

Severity Score

Severity Score

Weakness Type (CWE)

Insufficient Logging

CWE-778

Top Fix

icon

Upgrade Version

Upgrade to version https://github.com/nextcloud/server.git - v30.0.9;https://github.com/nextcloud/server.git - v31.0.1

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): NETWORK
Attack Complexity (AC): LOW
Privileges Required (PR): LOW
User Interaction (UI): NONE
Scope (S): UNCHANGED
Confidentiality (C): NONE
Integrity (I): LOW
Availability (A): NONE

Do you need more information?

Contact Us