CVE-2019-5452: Nextcloud

Low severity, CVSS 2.4. EPSS: 0.4% chance of exploitation in the next 30 days.

Bypass lock protection in the Nextcloud Android app prior to version 3.6.2 causes leaking of thumbnails when requesting the Android content provider although the lock protection was not solved.

Affected products

  • Nextcloud Nextcloud: before 3.6.2 (fixed in 3.6.2)

Published 2019-07-30. Last modified 2026-06-17.