Nextcloud Server before 9.0.55 and 10.0.2 suffers from a Content-Spoofing vulnerability in the "files" app. The top navigation bar displayed in the files list contained partially user-controllable input leading to a potential misrepresentation of information.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "9.0.54"
},
{
"introduced": "0"
},
{
"last_affected": "10.0.2"
}
]
}