Redpacketsecurity SSRF Vulnerability Disclosed in Nextcloud Notifications App
Article Content
Browse articles
- •Nextcloud's Notifications app has an SSRF vulnerability affecting authenticated users.
- •Exploitation requires specific server settings to be enabled.
- •Nextcloud has issued a fix, and users are urged to update immediately.
A server-side request forgery (SSRF) vulnerability was disclosed in Nextcloud’s Notifications app, allowing authenticated users to set a push-notification proxy address of their choice. This could enable users to make requests to internal services when notifications are sent. The vulnerability was demonstrated by a normal user and requires the 'allow_local_remote_servers' setting to be enabled for exploitation. Nextcloud has resolved the issue in its latest maintenance releases, and users are advised to update their systems and review their configurations. The researcher who reported the bug received a $150 bounty for their findings. The report was submitted on September 30, 2026.
Ask AI about this cluster
Answers cite the sources they use
Updated just now How this analysis works
Timeline
2026-09-30
Vulnerability report submitted
A researcher reported an SSRF vulnerability in Nextcloud’s Notifications app, allowing user-controlled proxy settings.
RedpacketsecurityRecent
Nextcloud resolves the issue
Nextcloud marked the SSRF vulnerability as resolved in its latest maintenance releases, urging users to update.
RedpacketsecurityMore articles in this cluster (2)
Common questions
What versions of Nextcloud are affected?
The article does not specify exact versions, but it mentions the Notifications app is vulnerable.
Is this vulnerability actively being exploited?
No active exploitation has been reported; the vulnerability was disclosed and patched.
What should users do to protect their systems?
Users should update to the latest version of Nextcloud and review their server settings regarding local remote servers.
Continue Reading
Critical Zero-Day Exploits Target F5 and Check Point Products F5 Networks released emergency hotfixes for a critical zero-day vulnerability, CVE-2026-94127, in its BIG-IP Access Policy Manager on September 22, 2026, after confirming active exploitation. This flaw allows unauthenticated remote code execution (RCE) and has a CVSS score of 9.8. Concurrently, Check Point disclosed…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…