CVE-2021-37703
13.08.2021, 16:15
Discourse is an open-source platform for community discussion. In Discourse before versions 2.7.8 and 2.8.0.beta5, a user's read state for a topic such as the last read post number and the notification level is exposed.Enginsight
Vendor | Product | Version |
---|---|---|
discourse | discourse | 𝑥 < 2.7.8 |
discourse | discourse | 2.8.0:beta1 |
discourse | discourse | 2.8.0:beta2 |
discourse | discourse | 2.8.0:beta3 |
discourse | discourse | 2.8.0:beta4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References