CVE Vulnerabilities

CVE-2023-36818

Published: Jul 14, 2023 | Modified: Jul 27, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Discourse is an open source discussion platform. In affected versions a request to create or update custom sidebar section can cause a denial of service. This issue has been patched in commit 52b003d915. Users are advised to upgrade. There are no known workarounds for this vulnerability.

Affected Software

Name Vendor Start Version End Version
Discourse Discourse 3.1.0-beta5 (including) 3.1.0-beta5 (including)

References