CVE-2025-53829 HIGH

CVE-2025-53829: ownCloud 10 is vulnerable to Relative Path Traversal

Vendor Owncloud
Product ownCloud 10
Weakness CWE-23
Published July 6, 2026
Last update July 6, 2026

CVSS base score

8.0/10
Attack vector Network
Attack complexity High
Privileges required High
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H

What the vulnerability does

01Description

ownCloud is a file storage, synchronization, and sharing application. In ownCloud 10 prior to version 10.15.3, an attacker with administrative privileges can exploit a path traversal vulnerability in the system to execute arbitrary code. Upgrade ownCloud 10 to version 10.15.3 or later to receive a patch.

Key dates

02Disclosure timeline

July 6, 2026 CVE published

Related vulnerabilities

04Related CVE