Filters

Versions

2.9.0-beta1
32
2.9.0-beta2
32
2.9.0-beta3
32
2.9.0-beta4
29
2.9.0-beta5
28
2.9.0-beta7
28
2.9.0-beta6
27
2.9.0-beta8
27
3.1.0-beta1
26
2.8.0-beta1
25
2.8.0-beta2
25
2.8.0-beta3
25
2.8.0-beta4
25
2.9.0-beta10
24
2.8.0-beta5
23
2.8.0-beta6
23
2.9.0-beta11
23
2.9.0-beta12
23
2.8.0-beta7
22
2.9.0-beta13
21
2.9.0-beta9
21
2.8.0-beta8
20
2.8.0-beta9
20
2.9.0-beta14
20
3.1.0-beta2
20
2.8.0-beta10
19
3.0.0-beta15
18
2.4.0-beta1
17
2.4.0-beta2
17
1.1.0-beta1
16
1.1.0-beta2
16
1.1.0-beta3
16
1.1.0-beta4
16
1.1.0-beta5
16
1.1.0-beta6
16
1.1.0-beta6b
16
1.1.0-beta7
16
1.1.0-beta8
16
1.2.0-beta1
16
1.2.0-beta2
16
1.2.0-beta3
16
1.2.0-beta4
16
1.2.0-beta5
16
1.2.0-beta6
16
1.2.0-beta7
16
1.2.0-beta8
16
1.2.0-beta9
16
1.3.0-beta1
16
1.3.0-beta10
16
1.3.0-beta11
16
1.3.0-beta2
16
1.3.0-beta3
16
1.3.0-beta4
16
1.3.0-beta5
16
1.3.0-beta6
16
1.3.0-beta7
16
1.3.0-beta8
16
1.3.0-beta9
16
1.4.0-beta1
16
1.4.0-beta10
16
1.4.0-beta11
16
1.4.0-beta12
16
1.4.0-beta2
16
1.4.0-beta3
16
1.4.0-beta4
16
1.4.0-beta5
16
1.4.0-beta6
16
1.4.0-beta7
16
1.4.0-beta8
16
1.4.0-beta9
16
1.5.0-beta1
16
1.5.0-beta10
16
1.5.0-beta11
16
1.5.0-beta12
16
1.5.0-beta13
16
1.5.0-beta13b
16
1.5.0-beta14
16
1.5.0-beta2
16
1.5.0-beta3
16
1.5.0-beta4
16
1.5.0-beta5
16
1.5.0-beta6
16
1.5.0-beta7
16
1.5.0-beta8
16
1.5.0-beta9
16
1.6.0-beta1
16
1.6.0-beta10
16
1.6.0-beta11
16
1.6.0-beta12
16
1.6.0-beta2
16
1.6.0-beta3
16
1.6.0-beta4
16
1.6.0-beta5
16
1.6.0-beta6
16
1.6.0-beta7
16
1.6.0-beta8
16
1.6.0-beta9
16
1.7.0-beta1
16
1.7.0-beta10
16
1.7.0-beta11
16
1.7.0-beta2
16
1.7.0-beta3
16
1.7.0-beta4
16
1.7.0-beta5
16
1.7.0-beta6
16
1.7.0-beta7
16
1.7.0-beta8
16
1.7.0-beta9
16
1.8.0-beta1
16
1.8.0-beta10
16
1.8.0-beta11
16
1.8.0-beta12
16
1.8.0-beta13
16
1.8.0-beta2
16
1.8.0-beta3
16
1.8.0-beta4
16
1.8.0-beta5
16
1.8.0-beta6
16
1.8.0-beta7
16
1.8.0-beta8
16
1.8.0-beta9
16
1.9.0-beta1
16
1.9.0-beta10
16
1.9.0-beta11
16
1.9.0-beta12
16
1.9.0-beta13
16
1.9.0-beta14
16
1.9.0-beta15
16
1.9.0-beta16
16
1.9.0-beta17
16
1.9.0-beta2
16
1.9.0-beta3
16
1.9.0-beta4
16
1.9.0-beta5
16
1.9.0-beta6
16
1.9.0-beta7
16
1.9.0-beta8
16
1.9.0-beta9
16
2.0.0-beta1
16
2.0.0-beta10
16
2.0.0-beta2
16
2.0.0-beta3
16
2.0.0-beta4
16
2.0.0-beta5
16
2.0.0-beta6
16
2.0.0-beta7
16
2.0.0-beta8
16
2.0.0-beta9
16
2.1.0-beta1
16
2.1.0-beta2
16
2.1.0-beta3
16
2.1.0-beta4
16
2.1.0-beta5
16
2.1.0-beta6
16
2.2.0-beta1
16
2.2.0-beta10
16
2.2.0-beta2
16
2.2.0-beta3
16
2.2.0-beta4
16
2.2.0-beta5
16
2.2.0-beta6
16
2.2.0-beta7
16
2.2.0-beta8
16
2.2.0-beta9
16
2.3.0-beta1
16
2.3.0-beta10
16
2.3.0-beta11
16
2.3.0-beta2
16
2.3.0-beta3
16
2.3.0-beta4
16
2.3.0-beta5
16
2.3.0-beta6
16
2.3.0-beta7
16
2.3.0-beta8
16
2.3.0-beta9
16
2.4.0-beta10
16
2.4.0-beta11
16
2.4.0-beta3
16
2.4.0-beta4
16
2.4.0-beta5
16
2.4.0-beta6
16
2.4.0-beta7
16
2.4.0-beta8
16
2.4.0-beta9
16
2.5.0-beta1
16
2.5.0-beta2
16
2.5.0-beta3
16
2.5.0-beta4
16
2.5.0-beta5
16
2.5.0-beta6
16
2.5.0-beta7
16
2.6.0-beta1
16
2.6.0-beta2
16
2.6.0-beta3
16
2.6.0-beta4
16
2.6.0-beta5
16
2.6.0-beta6
16
2.7.0-beta1
16
2.7.0-beta2
16
2.7.0-beta3
16
2.7.0-beta4
16
2.7.0-beta5
16
2.7.0-beta6
16
2.7.0-beta7
16
2.7.0-beta8
16
2.7.0-beta9
16
2.8.0-beta11
16
3.0.0-beta16
14
3.1.0-beta3
14
3.1.0-beta5
10
3.1.0-beta6
8
3.2.0-beta1
8
3.2.0-beta2
6
3.3.0-beta1
6
3.3.0-beta2
6
3.1.0-beta4
4
3.1.0-beta7
4
3.1.0-beta8
4
3.2.0-beta3
3
3.3.0-beta3
3
2.3.2
2
3.0.1
2
3.1.1
2
3.4.0
2
3.4.0-beta1
2
2.6.0
1
2.7.12
1
2.7.7
1
2.7.9
1
2.8.11
1
2.8.13
1
2.8.2
1
2.8.4
1
3.0.2
1
3.1.0
1
3.2.0-beta4
1
3.3.0-beta4
1

Discourse DiscourseCross-site Scripting (XSS) via chat excerpts when content security policy (CSP) disabled in Discourse

First published (updated )

Discourse DiscoursePrevent topic list filtering by hidden tags for unauthorized users in Discourse

First published (updated )

Discourse DiscourseDiscourse allows iframe injection though default site setting

First published (updated )

Discourse DiscourseDiscourse has an XSS via Onebox system

First published (updated )

Discourse DiscourseDiscourse vulnerable to Server-Side Request Forgery via FastImage

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseDiscourse doesn't limit reviewable user serializer payload

First published (updated )

Discourse DiscourseDiscourse missing authorization checks for suspending admins/moderators

First published (updated )

Discourse DiscourseDiscourse vulnerable to stored-dom XSS via Facebook Oneboxes

First published (updated )

Discourse DiscourseDiscourse improperly sanitized user input leads to XSS

EPSS
0.05%
First published (updated )

Discourse DiscourseDiscourse secure uploads accessible to guests even when login is required

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseInsufficient control of custom field value sizes

EPSS
0.04%
First published (updated )

Discourse DiscourseHTML injection in oneboxed links

First published (updated )

Discourse DiscourseBypassing height value allowed in some theme components

First published (updated )

Discourse DiscourseDiscourse vulnerable to DoS via Regexp Injection in Full Name

First published (updated )

Discourse DiscoursePrevent unauthorized access to summary details in Discourse

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseArbitrary keys can be added to a topic's custom fields by any user in Discourse

First published (updated )

Discourse DiscourseDiscourse DoS via SvgSprite cache

First published (updated )

Discourse DiscourseDiscourse DoS via remote theme assets

First published (updated )

Discourse DiscourseDiscourse DoS via 2FA and Security Key Names

First published (updated )

Discourse DiscourseDiscourse vulnerable to DoS via drafts

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseDiscourse's restricted tag information visible to unauthenticated users

First published (updated )

Discourse DiscourseDiscourse vulnerable to DoS via defer queue

EPSS
0.04%
First published (updated )

Discourse DiscourseDiscourse vulnerable to DoS via post edit reason

EPSS
0.04%
First published (updated )

Discourse DiscourseDiscourse CSP nonce reuse vulnerability for anonymous users

First published (updated )

Discourse DiscourseTopic Title Validation Skipped When Changing Category in Discourse

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseCSP nonce reuse vulnerability in Discourse

First published (updated )

Discourse DiscourseInfoleak

First published (updated )

Discourse DiscourseDiscourse is an open source discussion platform. Prior to version 3.0.4 of the `stable` branch and v…

First published (updated )

Discourse DiscourseDiscourse Topic Creation Page Allows iFrame Tag without Restrictions

First published (updated )

Discourse DiscourseDiscourse's general category permissions could be set back to default

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseXSS

First published (updated )

Discourse DiscourseMultisite denial of service through unsanitized dynamic dispatch to SiteSetting in Discourse

First published (updated )

Discourse DiscourseStored Cross-site Scripting via improper sanitization of svg files in Discourse

First published (updated )

Discourse DiscourseDiscourse is an open-source discussion platform. Prior to version 3.0.2 of the `stable` branch and v…

First published (updated )

Discourse DiscourseDiscourse vulnerable to Cross-site Scripting - user name displayed on post

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseXSS

First published (updated )

Discourse DiscourseInfoleak

First published (updated )

Discourse DiscoursePresence of restricted personal Discourse messages may be leaked if tagged with a tag

First published (updated )

Discourse DiscourseDiscourse tags with no visibility are leaking into og:article:tag

First published (updated )

Discourse DiscourseRegular expression denial of service via installing themes via git in discourse

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseCVE-2023-23615

First published (updated )

Discourse DiscourseInfoleak

First published (updated )

Discourse DiscourseDiscourse is an open-source discussion platform. Prior to version 3.0.1 on the `stable` branch and 3…

First published (updated )

Discourse DiscourseInfoleak

First published (updated )

Discourse DiscourseCVE-2023-22740

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Discourse DiscourseCVE-2023-22739

First published (updated )

Discourse DiscourseDiscourse vulnerable to Cross-site Scripting through tag descriptions

First published (updated )

Discourse DiscourseDiscourse vulnerable to exposure of user post counts per topic to unauthorized users

First published (updated )

Discourse DiscourseDiscourse vulnerable to private topic leak via email#send_digest

First published (updated )

Discourse DiscourseDiscourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch an…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203