Nextcloud Tables Information Disclosure Vulnerability

Vulnerability

A vulnerability in the Nextcloud Tables app, affecting versions 0.8.0 prior to 1.0.4, allows users with read-only permissions to access view filter criteria. This issue arises from inadequate data masking in the ViewService, leading to unintended exposure of metadata.

Impact

The vulnerability results in unauthorized access to view filter criteria by users with read-only permissions.

Remediation

Users are advised to upgrade the Nextcloud Tables app to version 1.0.4 or 2.0.0. Alternatively, the Tables app can be disabled.

Added: Jun 1, 2026, 8:07 PM
Updated: Jun 1, 2026, 8:07 PM

Vulnerability Rating

Custom Algorithm
spread
6.2
impact
0.6
exploitability
5.9
remediation
8.3
relevance
9.7
threat
3.2
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.