Total vulnerabilities in the database
Nextcloud Mail before 1.9.5 suffers from improper access control due to a missing permission check allowing other authenticated users to create mail aliases for other users.
CVSS v3:
CVSS v2:
CWEs: