Vulnerabilities > Discourse > High

DATE CVE VULNERABILITY TITLE RISK
2023-01-28 CVE-2023-23621 Unspecified vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse
7.5
2023-01-05 CVE-2022-46177 Insufficient Session Expiration vulnerability in Discourse
Discourse is an option source discussion platform.
network
low complexity
discourse CWE-613
8.1
2022-11-02 CVE-2022-39356 Unspecified vulnerability in Discourse
Discourse is a platform for community discussion.
network
low complexity
discourse
8.8
2022-09-29 CVE-2022-36066 Unrestricted Upload of File with Dangerous Type vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-434
7.2
2022-09-02 CVE-2022-37458 Unspecified vulnerability in Discourse
Discourse through 2.8.7 allows admins to send invitations to arbitrary email addresses at an unlimited rate.
network
low complexity
discourse
7.2
2022-08-01 CVE-2022-31184 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is the an open source discussion platform.
network
low complexity
discourse CWE-770
7.5
2022-01-13 CVE-2022-21684 Improper Authentication vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-287
8.8
2021-11-15 CVE-2021-41263 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Discourse Rails Multisite
rails_multisite provides multi-db support for Rails applications.
network
low complexity
discourse CWE-327
8.8
2021-09-20 CVE-2021-41082 Incorrect Authorization vulnerability in Discourse
Discourse is a platform for community discussion.
network
low complexity
discourse CWE-863
7.5
2021-08-13 CVE-2021-37693 Insufficient Session Expiration vulnerability in Discourse
Discourse is an open-source platform for community discussion.
network
low complexity
discourse CWE-613
7.5