Vulnerabilities > Discourse > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-11-02 CVE-2022-39378 Unspecified vulnerability in Discourse
Discourse is a platform for community discussion.
network
low complexity
discourse
5.3
2022-10-06 CVE-2022-39279 Cross-site Scripting vulnerability in Discourse Discourse-Chat 0.3/0.4
discourse-chat is a plugin for the Discourse message board which adds chat functionality.
network
low complexity
discourse CWE-79
5.4
2022-10-06 CVE-2022-39270 Cross-site Scripting vulnerability in Discourse Discotoc
DiscoTOC is a Discourse theme component that generates a table of contents for topics.
network
low complexity
discourse CWE-79
5.4
2022-09-29 CVE-2022-39232 Unspecified vulnerability in Discourse 2.9.0
Discourse is an open source discussion platform.
network
low complexity
discourse
4.3
2022-09-29 CVE-2022-36068 Missing Authorization vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-862
4.3
2022-09-29 CVE-2022-39226 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-770
4.3
2022-06-21 CVE-2022-31095 Missing Authorization vulnerability in Discourse Discourse-Chat 0.3
discourse-chat is a chat plugin for the Discourse application.
network
low complexity
discourse CWE-862
6.5
2022-06-14 CVE-2022-31060 Unspecified vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse
5.0
2022-06-14 CVE-2022-31059 Cross-site Scripting vulnerability in Discourse Calendar 1.0.0
Discourse Calendar is a calendar plugin for Discourse, an open-source messaging app.
network
low complexity
discourse CWE-79
5.4
2022-06-07 CVE-2022-31025 Unspecified vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse
5.3