Vulnerabilities > Discourse > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-06-21 CVE-2022-31095 Missing Authorization vulnerability in Discourse Discourse-Chat 0.3
discourse-chat is a chat plugin for the Discourse application.
network
low complexity
discourse CWE-862
6.5
2022-06-14 CVE-2022-31060 Unspecified vulnerability in Discourse
Discourse is an open-source discussion platform.
network
low complexity
discourse
5.3
2022-06-14 CVE-2022-31059 Cross-site Scripting vulnerability in Discourse Calendar 1.0.0
Discourse Calendar is a calendar plugin for Discourse, an open-source messaging app.
network
low complexity
discourse CWE-79
5.4
2022-06-07 CVE-2022-31025 Unspecified vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse
5.3
2022-04-26 CVE-2022-24866 Information Exposure vulnerability in Discourse Assign
Discourse Assign is a plugin for assigning users to a topic in Discourse, an open-source messaging platform.
network
low complexity
discourse CWE-200
4.3
2022-04-14 CVE-2022-24824 Inclusion of Functionality from Untrusted Control Sphere vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse CWE-829
5.3
2022-04-14 CVE-2022-24850 Information Exposure vulnerability in Discourse 2.4.0/2.6.0/2.9.0
Discourse is an open source platform for community discussion.
network
low complexity
discourse CWE-200
4.3
2022-04-11 CVE-2022-24804 Incorrect Default Permissions vulnerability in Discourse
Discourse is an open source platform for community discussion.
network
low complexity
discourse CWE-276
5.3
2022-03-24 CVE-2022-24782 Information Exposure vulnerability in Discourse 2.4.0/2.6.0
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-200
4.3
2022-02-15 CVE-2022-23641 Infinite Loop vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-835
6.5