Loading
An authenticated server-side request forgery in Nextcloud server 16.0.1 allowed to detect local and remote services when adding a new subscription in the calendar application.
Use CWE-918, Nextcloud vendor hub and Nextcloud Server product page to widen CVE-2020-8118 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-59788, CVE-2025-47790 and CVE-2025-66512 for nearby disclosures in the same product family.