Vulnerabilities > Discourse > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-01-05 CVE-2023-22454 Unspecified vulnerability in Discourse
Discourse is an option source discussion platform.
network
low complexity
discourse
6.1
2023-01-05 CVE-2022-23546 Information Exposure vulnerability in Discourse
In version 2.9.0.beta14 of Discourse, an open-source discussion platform, maliciously embedded urls can leak an admin's digest of recent topics, possibly exposing private information.
local
low complexity
discourse CWE-200
5.5
2023-01-05 CVE-2022-23548 Unspecified vulnerability in Discourse
Discourse is an option source discussion platform.
network
low complexity
discourse
6.5
2023-01-05 CVE-2022-23549 Unspecified vulnerability in Discourse
Discourse is an option source discussion platform.
network
low complexity
discourse
6.5
2023-01-04 CVE-2022-46180 Cross-site Scripting vulnerability in Discourse Mermaid 1.0.0
Discourse Mermaid (discourse-mermaid-theme-component) allows users of Discourse, open-source forum software, to create graphs using the Mermaid syntax.
network
low complexity
discourse CWE-79
5.4
2022-12-02 CVE-2022-46159 Unspecified vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse
4.3
2022-11-29 CVE-2022-46150 Unspecified vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse
4.3
2022-11-29 CVE-2022-46148 Unspecified vulnerability in Discourse
Discourse is an open-source messaging platform.
network
low complexity
discourse
5.4
2022-11-28 CVE-2022-41921 Allocation of Resources Without Limits or Throttling vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse CWE-770
4.3
2022-11-28 CVE-2022-41944 Incorrect Authorization vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse CWE-863
4.3