Podatność CVE-2023-32301


Publikacja: 2023-06-13   Modyfikacja: 2023-06-14

Opis:
Discourse is an open source discussion platform. Prior to version 3.0.4 of the `stable` branch and version 3.1.0.beta5 of the `beta` and `tests-passed` branches, multiple duplicate topics could be created if topic embedding is enabled. This issue is patched in version 3.0.4 of the `stable` branch and version 3.1.0.beta5 of the `beta` and `tests-passed` branches. As a workaround, disable topic embedding if it has been enabled.

Typ:

CWE-116

(Improper Encoding or Escaping of Output)

 Referencje:
https://github.com/discourse/discourse/security/advisories/GHSA-p2jx-m2j5-hqh4

Copyright 2024, cxsecurity.com

 

Back to Top