We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
By directly specifying the ID of a table or view, a malicious user could blindly insert new rows into tables they have no access to.
It is recommended that the Nextcloud Tables is upgraded to 0.8.0
If you have any questions or comments about this advisory:
Impact
By directly specifying the ID of a table or view, a malicious user could blindly insert new rows into tables they have no access to.
Patches
It is recommended that the Nextcloud Tables is upgraded to 0.8.0
Workarounds
References
For more information
If you have any questions or comments about this advisory: