Nextcloud Calendar
6 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Nextcloud Calendar. Use it to gauge the current risk picture and drill into individual advisories.
Nextcloud Calendar CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 3 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 6 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Medium4
- Low2
Latest CVEs
The 6 most recently published vulnerabilities affecting Nextcloud Calendar.
- CVE-2025-66550Nextcloud Calendar attachments of local files are offered to downloaded5.7
- CVE-2025-66546Nextcloud Calendar app allowed booking appointments without the generated token3.3
- CVE-2025-66511Nextcloud Calendar app used predictable proposal participant tokens4.8
- CVE-2023-45150Inviting excessive long email addresses to a calendar event makes the Nextcloud server unresponsive4.3
- CVE-2023-33183Error in calendar when booking an appointment reveals the full path of the website2.6
- CVE-2022-24838Command Injection in Appointment Emails for Nextcloud Calendar5.3
Product grouping is registry-driven, with AI assist and human review. How it works