Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mat0Pe

#47891of 53,622
5.3Total CVSS
Vulnerabilities · 1
PT-2023-30322
5.3
2023-11-10
Discourse · Discourse · CVE-2023-47119
**Name of the Vulnerable Software and Affected Versions** Discourse versions prior to 3.1.3 Discourse version 3.2.0.beta3 and earlier of the `beta` and `tests-passed` branches **Description** Discourse is an open source platform for community discussion. The issue allows some links to inject arbitrary HTML tags when rendered through the Onebox engine. There are no known workarounds. **Recommendations** For versions prior to 3.1.3, update to version 3.1.3 or later of the `stable` branch. For version 3.2.0.beta3 and earlier of the `beta` and `tests-passed` branches, update to version 3.2.0.beta3 or later.