Unrated severityNVD Advisory· Published Mar 4, 2023· Updated Feb 25, 2025
Discourse tags with no visibility are leaking into og:article:tag
CVE-2023-25819
Description
Discourse is an open source platform for community discussion. Tags that are normally private are showing in metadata. This affects any site running the tests-passed or beta branches >= 3.1.0.beta2. The issue is patched in the latest beta and tests-passed version of Discourse.
Affected products
1- Range: < 3.1.0.beta3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/discourse/discourse/commit/a9f2c6db64e7d78b8e0f55e7bd77c5fe3459b831mitrex_refsource_MISC
- github.com/discourse/discourse/security/advisories/GHSA-xx2h-mwm7-hq6qmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.