CVE-2023-36818

Published

Severity

CVSS v3:
7.5 HIGH
CVSS v2:
N/A

Description

Discourse is an open source discussion platform. In affected versions a request to create or update custom sidebar section can cause a denial of service. This issue has been patched in commit `52b003d915`. Users are advised to upgrade. There are no known workarounds for this vulnerability.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:discourse:discourse:3.1.0:beta5:*:*:beta:*:*:*n/an/a3.1.0

External Links