CVE-2021-41271
15.11.2021, 22:15
Discourse is a platform for community discussion. In affected versions a maliciously crafted request could cause an error response to be cached by intermediate proxies. This could cause a loss of confidentiality for some content. This issue is patched in the latest stable, beta and tests-passed versions of Discourse.Enginsight
Vendor | Product | Version |
---|---|---|
discourse | discourse | 𝑥 ≤ 2.7.9 |
discourse | discourse | 2.8.0:beta1 |
discourse | discourse | 2.8.0:beta2 |
discourse | discourse | 2.8.0:beta3 |
discourse | discourse | 2.8.0:beta4 |
discourse | discourse | 2.8.0:beta5 |
discourse | discourse | 2.8.0:beta6 |
discourse | discourse | 2.8.0:beta7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References