Vulnerabilities > Discourse > Discourse > 2.0.0

DATE CVE VULNERABILITY TITLE RISK
2022-11-14 CVE-2022-39385 Incorrect Authorization vulnerability in Discourse
Discourse is the an open source discussion platform.
network
low complexity
discourse CWE-863
6.5
2022-11-02 CVE-2022-39241 Server-Side Request Forgery (SSRF) vulnerability in Discourse
Discourse is a platform for community discussion.
network
low complexity
discourse CWE-918
4.9
2022-11-02 CVE-2022-39356 Unspecified vulnerability in Discourse
Discourse is a platform for community discussion.
network
low complexity
discourse
8.8
2022-11-02 CVE-2022-39378 Unspecified vulnerability in Discourse
Discourse is a platform for community discussion.
network
low complexity
discourse
5.3
2022-09-29 CVE-2022-36066 Unrestricted Upload of File with Dangerous Type vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-434
7.2
2022-09-29 CVE-2022-36068 Missing Authorization vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-862
4.3
2022-09-29 CVE-2022-39226 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-770
4.3
2022-09-02 CVE-2022-37458 Unspecified vulnerability in Discourse
Discourse through 2.8.7 allows admins to send invitations to arbitrary email addresses at an unlimited rate.
network
low complexity
discourse
7.2
2022-06-27 CVE-2022-31096 Improper Preservation of Permissions vulnerability in Discourse
Discourse is an open source discussion platform.
network
high complexity
discourse CWE-281
2.1
2022-06-14 CVE-2022-31060 Unspecified vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse
5.0