CVE-2024-52589
19.12.2024, 20:15
Discourse is an open source platform for community discussion. Moderators can see the Screened emails list in the admin dashboard, and through that can learn the email of a user. This problem is patched in the latest version of Discourse. Users unable to upgrade should remove moderator role from untrusted users.Enginsight
Vendor | Product | Version |
---|---|---|
discourse | discourse | 𝑥 < 3.3.3 |
discourse | discourse | 𝑥 < 3.4.0 |
discourse | discourse | 3.4.0:beta1 |
discourse | discourse | 3.4.0:beta2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration