CVE-2024-45297

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
07/10/2024
Last modified:
25/09/2025

Description

Discourse is an open source platform for community discussion. Users can see topics with a hidden tag if they know the label/name of that tag. This issue has been patched in the latest stable, beta and tests-passed version of Discourse. All users area are advised to upgrade. There are no known workarounds for this vulnerability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:discourse:discourse:*:*:*:*:stable:*:*:* 3.3.2 (excluding)
cpe:2.3:a:discourse:discourse:*:*:*:*:beta:*:*:* 3.4.0 (excluding)
cpe:2.3:a:discourse:discourse:3.4.0:beta1:*:*:beta:*:*:*