CVE-2025-53830: ownCloud Anti-Virus For ownCloud

Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.

Anti-Virus for ownCloud is an anti-virus application for file storage, synchronization, and sharing application ownCloud. Versions of Anti-Virus for ownCloud before 1.2.3 are vulnerable to Server-Side Request Forgery (SSRF). This corresponds to versions of ownCloud 10 prior to 10.15.3. Upgrade ownCloud 10 to version 10.15.3 or later or upgrade Anti-Virus for ownCloud 10 to version 1.2.3 or later to receive a fix.

Affected products

  • ownCloud Anti-Virus For ownCloud: before 1.2.3 (fixed in 1.2.3)
  • ownCloud ownCloud 10: before 10.15.3 (fixed in 10.15.3)

Published 2026-07-06. Last modified 2026-10-06.