PT-2021-23939 · Discourse · Discourse

Ethicalbughunter

+2

·

Published

2021-12-01

·

Updated

2024-03-06

·

CVE-2021-43793

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions: Discourse (affected versions not specified)
Description: A vulnerability in the Polls feature of Discourse allowed users to vote multiple times in a single-option poll. The issue is related to the Polls feature, but specific details about exploitation, such as API endpoints or vulnerable parameters, are not provided.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

BIT-DISCOURSE-2021-43793
CVE-2021-43793
GHSA-JQ7H-44VC-H6QX

Affected Products

Discourse