Nextcloud · Nextcloud Password Policy · CVE-2022-35931
**Name of the Vulnerable Software and Affected Versions**
Nextcloud Password Policy versions prior to 22.2.10
Nextcloud Password Policy versions prior to 23.0.7
Nextcloud Password Policy versions prior to 24.0.3
**Description**
The random password generator in Nextcloud Password Policy may, in very rare cases, generate common passwords that the validator itself would block.
**Recommendations**
Upgrade to version 22.2.10 to receive a patch for the issue in Password Policy.
Upgrade to version 23.0.7 to receive a patch for the issue in Password Policy.
Upgrade to version 24.0.3 to receive a patch for the issue in Password Policy.