First published: Thu Dec 19 2024(Updated: )
Discourse is an open source platform for community discussion. Users clicking on the lightbox thumbnails could be affected. This problem is patched in the latest version of Discourse. Users are advised to upgrade. There are no known workarounds for this vulnerability.
Credit: security-advisories@github.com
Affected Software | Affected Version | How to fix |
---|---|---|
Discourse |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-52794 is considered a moderate severity vulnerability affecting the Discourse platform.
To fix CVE-2024-52794, users must upgrade to the latest version of Discourse where the vulnerability has been patched.
CVE-2024-52794 can potentially allow certain security risks when users click on lightbox thumbnails.
There are no known workarounds for CVE-2024-52794, making an upgrade the only solution.
All versions of Discourse prior to the latest patch are affected by CVE-2024-52794.