Identifier
|
Related Record |
Severity
|
Date Published
|
Description | Versions Affected |
---|---|---|---|---|---|
CVE-2023-28112 | Low | Mar 17, 2023 | Discourse is an open-source discussion platform. Prior to version 3.1.0.beta3 of the `beta` and `tests-passed` branches, some user provided URLs were b more... |
3.1.0, 3.0.6, 3.0.5, 3.0.4, 3.0.3, 3.0.2, 3.0.1, 3.0.0, 2.8.14, 2.8.13
|
|
CVE-2021-41082 | Medium | Sep 20, 2021 | Discourse is a platform for community discussion. In affected versions any private message that includes a group had its title and participating user e more... |
3.1.0, 3.0.6, 3.0.5, 3.0.4, 3.0.3, 3.0.2, 3.0.1, 3.0.0, 2.8.14, 2.8.13
|
|
BDSA-2023-1809 | Low | Jul 17, 2023 | Discourse contains a denial-of-service (DoS) vulnerability due to unrestricted link creation in custom sidebar component. An attacker may leverage this more... | ||
BDSA-2023-0578 | Low | Mar 20, 2023 | Discourse contains an information exposure vulnerability due to insufficient validation of user message tagging. Successful exploitation of this issue more... |