Vulnerabilities > Discourse

DATE CVE VULNERABILITY TITLE RISK
2022-09-29 CVE-2022-39226 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-770
4.3
2022-09-02 CVE-2022-37458 Unspecified vulnerability in Discourse
Discourse through 2.8.7 allows admins to send invitations to arbitrary email addresses at an unlimited rate.
network
low complexity
discourse
7.2
2022-06-27 CVE-2022-31096 Improper Preservation of Permissions vulnerability in Discourse
Discourse is an open source discussion platform.
network
high complexity
discourse CWE-281
2.1
2022-06-21 CVE-2022-31095 Missing Authorization vulnerability in Discourse Discourse-Chat 0.3
discourse-chat is a chat plugin for the Discourse application.
network
low complexity
discourse CWE-862
6.5
2022-06-14 CVE-2022-31060 Unspecified vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse
5.0
2022-06-14 CVE-2022-31059 Cross-site Scripting vulnerability in Discourse Calendar 1.0.0
Discourse Calendar is a calendar plugin for Discourse, an open-source messaging app.
network
low complexity
discourse CWE-79
5.4
2022-06-07 CVE-2022-31025 Unspecified vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse
5.3
2022-04-26 CVE-2022-24866 Information Exposure vulnerability in Discourse Assign
Discourse Assign is a plugin for assigning users to a topic in Discourse, an open-source messaging platform.
network
low complexity
discourse CWE-200
4.0
2022-04-14 CVE-2022-24824 Inclusion of Functionality from Untrusted Control Sphere vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse CWE-829
5.0
2022-04-14 CVE-2022-24850 Information Exposure vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse CWE-200
4.0