Vulnerabilities > Discourse
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-03 | CVE-2024-37157 | Server-Side Request Forgery (SSRF) vulnerability in Discourse Discourse is an open-source discussion platform. | 5.3 |
2024-07-03 | CVE-2024-35234 | Cross-site Scripting vulnerability in Discourse Discourse is an open-source discussion platform. | 6.1 |
2024-07-03 | CVE-2024-36113 | Missing Authorization vulnerability in Discourse Discourse is an open-source discussion platform. | 6.5 |
2024-02-22 | CVE-2024-24817 | Unspecified vulnerability in Discourse Calendar 0.2 Discourse Calendar adds the ability to create a dynamic calendar in the first post of a topic on the open-source discussion platform Discourse. | 5.3 |
2024-02-21 | CVE-2024-23654 | Server-Side Request Forgery (SSRF) vulnerability in Discourse AI discourse-ai is the AI plugin for the open-source discussion platform Discourse. | 7.2 |
2024-02-21 | CVE-2024-26145 | Unspecified vulnerability in Discourse Calendar 0.2 Discourse Calendar adds the ability to create a dynamic calendar in the first post of a topic on Discourse. | 4.3 |
2024-02-21 | CVE-2023-46241 | Unspecified vulnerability in Discourse Microsoft Authentication `discourse-microsoft-auth` is a plugin that enables authentication via Microsoft. | 8.1 |
2024-02-01 | CVE-2024-24755 | Unspecified vulnerability in Discourse Group Membership IP Blocks discourse-group-membership-ip-block is a discourse plugin that adds support for adding users to groups based on their IP address. | 5.3 |
2024-01-30 | CVE-2024-23834 | Unspecified vulnerability in Discourse Discourse is an open-source discussion platform. | 6.1 |
2024-01-12 | CVE-2023-48297 | Unspecified vulnerability in Discourse Discourse is a platform for community discussion. | 7.5 |