CVE-2026-77166 | Nextcloud Collectives up to 3.5.0 Page Emoji Update Endpoint emoji injection

SecurityVulns

A vulnerability has been found in Nextcloud Collectives up to 3.5.0 and classified as problematic. Affected by this issue is some unknown functionality of the component Page Emoji Update Endpoint. This manipulation of the argument emoji causes injection.

This vulnerability is registered as CVE-2026-77166. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More