CVE-2021-41271
on github
Published
Severity
CVSS v3:
5.3 MEDIUM
CVSS v2:
5 MEDIUM
Description
Discourse is a platform for community discussion. In affected versions a maliciously crafted request could cause an error response to be cached by intermediate proxies. This could cause a loss of confidentiality for some content. This issue is patched in the latest stable, beta and tests-passed versions of Discourse.
References
Configurations
CPE23 | Version Start | Version End | Exact Version |
---|---|---|---|
cpe:2.3:a:discourse:discourse:2.8.0:beta1:*:*:*:*:*:* | n/a | n/a | 2.8.0 |
cpe:2.3:a:discourse:discourse:2.8.0:beta2:*:*:*:*:*:* | n/a | n/a | 2.8.0 |
cpe:2.3:a:discourse:discourse:2.8.0:beta3:*:*:*:*:*:* | n/a | n/a | 2.8.0 |
cpe:2.3:a:discourse:discourse:2.8.0:beta4:*:*:*:*:*:* | n/a | n/a | 2.8.0 |
cpe:2.3:a:discourse:discourse:2.8.0:beta5:*:*:*:*:*:* | n/a | n/a | 2.8.0 |
cpe:2.3:a:discourse:discourse:2.8.0:beta6:*:*:*:*:*:* | n/a | n/a | 2.8.0 |
cpe:2.3:a:discourse:discourse:2.8.0:beta7:*:*:*:*:*:* | n/a | n/a | 2.8.0 |
cpe:2.3:a:discourse:discourse:*:*:*:*:*:*:*:* | n/a | 2.7.9 (including) | * |