Known vulnerabilities in Twofactor WebAuthn

Vendor: Nextcloud
Software CPE: cpe:2.3:a:nextcloud:twofactor_webauthn:*:*:*:*:*:*:*:*
Total vulnerabilities: 1
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 2.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Twofactor WebAuthn Twofactor WebAuthn is affected by 1 known vulnerabilities: 1 low Critical High Medium Low

Vulnerabilities (1)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU119220 - Authorization Bypass Through User-Controlled Key
CVE-2025-66558
CWE-639 Low
No
No
1.4.2, 2.4.1 05.12.2025 SB2025120510