Discover how CVE-2022-29159 impacts Nextcloud Deck, allowing a user to move stacks with cards between boards. Learn more about affected versions and available patches.
Nextcloud Deck is a Kanban-style project & personal management tool for Nextcloud. This vulnerability, tracked as CVE-2022-29159, allows an authenticated user to move stacks with cards from their own board to a board of another user. Versions prior to 1.4.8, 1.5.6, and 1.6.1 are affected by this issue, but patches are available in the mentioned versions.