| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2021-39161 | Cross-site scripting via category name in Discourse | discourse | discourse | Medium | 4.4 | 2021-08-26 20:00:11 | Deep Dive |
| CVE-2021-37703 | Information exposure in Discourse | discourse | discourse | Medium | 4.3 | 2021-08-13 15:15:16 | Deep Dive |
| CVE-2021-37693 | Re-use of email tokens in Discourse | discourse | discourse | Medium | 5.3 | 2021-08-13 15:15:10 | Deep Dive |
| CVE-2021-37633 | XSS via d-popover and d-html-popover attribute | discourse | discourse | High | 7.4 | 2021-08-09 19:35:09 | Deep Dive |
| CVE-2021-32788 | Post creator of a whisper post can be revealed to non-staff users in Discourse | discourse | discourse | Medium | 4.3 | 2021-07-27 21:40:11 | Deep Dive |
| CVE-2021-32764 | YouTube Onebox susceptible to XSS | discourse | discourse | High | 8.1 | 2021-07-15 20:40:13 | Deep Dive |
| CVE-2019-1020018 | Discourse 授权问题漏洞 | - | Discourse | 高危 | - | 2019-07-29 13:14:16 | Deep Dive |
| CVE-2019-1020017 | Discourse 访问控制错误漏洞 | - | Discourse | 中危 | - | 2019-07-29 12:25:59 | Deep Dive |