Security Advisory

CVE-2023-44391

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-10-16 21:22:24
Last updated 2024-09-16 15:42:23
Assigner GitHub_M
CVSS score 5.3
State PUBLISHED

Description

Discourse is an open source platform for community discussion. User summaries are accessible for anonymous users even when `hide_user_profiles_from_public` is enabled. This problem has been patched in the 3.1.1 stable and 3.2.0.beta2 version of Discourse. Users are advised to upgrade. There are no known workarounds for this vulnerability.