PT-2024-31550 · Discourse · Discourse

Nattsw

·

Published

2024-10-07

·

Updated

2025-09-25

·

CVE-2024-45297

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Discourse versions prior to the latest stable, beta and tests-passed version
Description Discourse is an open source platform for community discussion. Users can see topics with a hidden tag if they know the label/name of that tag. This issue has been patched in the latest stable, beta and tests-passed version of Discourse.
Recommendations For all affected versions, upgrade to the latest stable, beta and tests-passed version of Discourse. There are no known workarounds for this issue.

Exploit

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

BIT-DISCOURSE-2024-45297
CVE-2024-45297
GHSA-58XW-3QR3-53GP

Affected Products

Discourse