← Back

CVE-2024-52589

nvd nist
Published: Dec 19, 2024Modified: Aug 26, 2025

JSON object

Loading...
2.7
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Exploitability: 1.2 / Impact: 1.4
Source: NVD

Description

Discourse is an open source platform for community discussion. Moderators can see the Screened emails list in the admin dashboard, and through that can learn the email of a user. This problem is patched in the latest version of Discourse. Users unable to upgrade should remove moderator role from untrusted users.

Affected (4)

Products: Discourse: Discourse
1 product
Discourse
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Discourse
Before 3.4.0
Before 3.3.3
Version 3.4.0 beta1
Version 3.4.0 beta2

References (1)

Source: security-advisories@github.com
Vendor Advisory

Timeline

No history available yet.