{
  "affected": [
    {
      "ranges": [
        {
          "database_specific": {
            "extracted_events": [
              {
                "introduced": "1.15.0"
              },
              {
                "fixed": "1.15.4"
              },
              {
                "introduced": "1.16.0"
              },
              {
                "fixed": "1.16.3"
              },
              {
                "introduced": "1.17.0"
              },
              {
                "fixed": "1.17.1"
              },
              {
                "introduced": "1.18.0"
              },
              {
                "fixed": "1.18.1"
              }
            ],
            "source": "AFFECTED_FIELD"
          },
          "events": [
            {
              "introduced": "addcec302503339a0c3863eed1a5c956ab7576ff"
            },
            {
              "fixed": "43084940199065937d5effc943bd91dba68d77f8"
            },
            {
              "introduced": "b0375ec86af6d33787dfd63103ee35a062cbe7c8"
            },
            {
              "fixed": "dae215821148c467187221e75504152d86bbfa8d"
            },
            {
              "introduced": "e3accd7600254c5b57b2921d486195a1cf57074a"
            },
            {
              "fixed": "cc2f53e44c892a4c6bf00d528f13080e38cd8fd8"
            },
            {
              "introduced": "8c50b5c3e600c29fb570a4874b16a48f882dc423"
            },
            {
              "fixed": "4b52b319faa729a1d00709c0545f179ba0866459"
            }
          ],
          "repo": "https://github.com/nextcloud/end_to_end_encryption",
          "type": "GIT"
        }
      ]
    }
  ],
  "aliases": [
    "GHSA-p3qw-7gwx-wg24"
  ],
  "database_specific": {
    "cna_assigner": "GitHub_M",
    "cwe_ids": [
      "CWE-639"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/45xxx/CVE-2026-45159.json"
  },
  "details": "Nextcloud is an open source content collaboration platform. From versions 1.15.0 to before 1.15.4, 1.16.0 to before 1.16.3, 1.17.0 to before 1.17.1, and 1.18.0 to before 1.18.1, a malicious user with access to an end-to-end encrypted files drop link was able to also drop files into other end-to-end encrypted folders of the share owner. Reading and modifying of other files was not possible. This issue has been patched in versions 1.15.4, 1.16.3, 1.17.1, 1.18.1, and 2.0.0-rc.7.",
  "id": "CVE-2026-45159",
  "modified": "2026-07-24T03:56:45.314673285Z",
  "published": "2026-06-01T16:39:38.836Z",
  "references": [
    {
      "type": "WEB",
      "url": "https://hackerone.com/reports/3304830"
    },
    {
      "type": "ADVISORY",
      "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/45xxx/CVE-2026-45159.json"
    },
    {
      "type": "ADVISORY",
      "url": "https://github.com/nextcloud/security-advisories/security/advisories/GHSA-p3qw-7gwx-wg24"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-45159"
    },
    {
      "type": "FIX",
      "url": "https://github.com/nextcloud/end_to_end_encryption/pull/1395"
    }
  ],
  "schema_version": "1.8.0",
  "severity": [
    {
      "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N",
      "type": "CVSS_V3"
    }
  ],
  "summary": "Nextcloud: Files drop share links for end-to-end encrypted folders allowed to drop files into other folders of the share owner"
}