{"id":"CVE-2026-45159","summary":"Nextcloud: Files drop share links for end-to-end encrypted folders allowed to drop files into other folders of the share owner","details":"Nextcloud is an open source content collaboration platform. From versions 1.15.0 to before 1.15.4, 1.16.0 to before 1.16.3, 1.17.0 to before 1.17.1, and 1.18.0 to before 1.18.1, a malicious user with access to an end-to-end encrypted files drop link was able to also drop files into other end-to-end encrypted folders of the share owner. Reading and modifying of other files was not possible. This issue has been patched in versions 1.15.4, 1.16.3, 1.17.1, 1.18.1, and 2.0.0-rc.7.","aliases":["GHSA-p3qw-7gwx-wg24"],"modified":"2026-07-24T03:56:45.314673285Z","published":"2026-06-01T16:39:38.836Z","database_specific":{"cna_assigner":"GitHub_M","cwe_ids":["CWE-639"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/45xxx/CVE-2026-45159.json"},"references":[{"type":"WEB","url":"https://hackerone.com/reports/3304830"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/45xxx/CVE-2026-45159.json"},{"type":"ADVISORY","url":"https://github.com/nextcloud/security-advisories/security/advisories/GHSA-p3qw-7gwx-wg24"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-45159"},{"type":"FIX","url":"https://github.com/nextcloud/end_to_end_encryption/pull/1395"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/nextcloud/end_to_end_encryption","events":[{"introduced":"addcec302503339a0c3863eed1a5c956ab7576ff"},{"fixed":"43084940199065937d5effc943bd91dba68d77f8"},{"introduced":"b0375ec86af6d33787dfd63103ee35a062cbe7c8"},{"fixed":"dae215821148c467187221e75504152d86bbfa8d"},{"introduced":"e3accd7600254c5b57b2921d486195a1cf57074a"},{"fixed":"cc2f53e44c892a4c6bf00d528f13080e38cd8fd8"},{"introduced":"8c50b5c3e600c29fb570a4874b16a48f882dc423"},{"fixed":"4b52b319faa729a1d00709c0545f179ba0866459"}],"database_specific":{"extracted_events":[{"introduced":"1.15.0"},{"fixed":"1.15.4"},{"introduced":"1.16.0"},{"fixed":"1.16.3"},{"introduced":"1.17.0"},{"fixed":"1.17.1"},{"introduced":"1.18.0"},{"fixed":"1.18.1"}],"source":"AFFECTED_FIELD"}}],"versions":["v1.18.0","v1.15.3","v1.16.2","v1.17.0","v1.16.1","v1.16.0","v1.15.2","v1.15.1","v1.15.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-45159.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"}]}