Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-52794


Discourse is an open source platform for community discussion. Users clicking on the lightbox thumbnails could be affected. This problem is patched in the latest version of Discourse. Users are advised to upgrade. There are no known workarounds for this vulnerability.


Published

2024-12-19T20:15:07.513

Last Modified

2025-08-26T02:14:59.883

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.8 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application discourse discourse < 3.3.2 Yes
Application discourse discourse < 3.4.0 Yes
Application discourse discourse 3.4.0 Yes
Application discourse discourse 3.4.0 Yes
Application discourse discourse 3.4.0 Yes

References