Vulnerabilities > Discourse > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-02 CVE-2022-39356 Unspecified vulnerability in Discourse
Discourse is a platform for community discussion.
network
low complexity
discourse
8.8
2022-09-29 CVE-2022-36066 Unrestricted Upload of File with Dangerous Type vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-434
7.2
2022-09-02 CVE-2022-37458 Unspecified vulnerability in Discourse
Discourse through 2.8.7 allows admins to send invitations to arbitrary email addresses at an unlimited rate.
network
low complexity
discourse
7.2
2022-01-13 CVE-2022-21684 Improper Authentication vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-287
8.8
2019-07-29 CVE-2019-1020018 Improper Authentication vulnerability in Discourse
Discourse before 2.3.0 and 2.4.x before 2.4.0.beta3 lacks a confirmation screen when logging in via an email link.
network
low complexity
discourse CWE-287
7.5