Security Advisory

CVE-2022-31184

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-08-01 19:40:30
Last updated 2025-04-23 17:55:55
Assigner GitHub_M
CVSS score 6.5
State PUBLISHED

Description

Discourse is the an open source discussion platform. In affected versions an email activation route can be abused to send mass spam emails. A fix has been included in the latest stable, beta and tests-passed versions of Discourse which rate limits emails. Users are advised to upgrade. Users unable to upgrade should manually rate limit email.