Low severity2.2NVD Advisory· Published Dec 19, 2024· Updated Jun 17, 2026
CVE-2024-52589
CVE-2024-52589
Description
Discourse is an open source platform for community discussion. Moderators can see the Screened emails list in the admin dashboard, and through that can learn the email of a user. This problem is patched in the latest version of Discourse. Users unable to upgrade should remove moderator role from untrusted users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:discourse:discourse:*:*:*:*:beta:*:*:*+ 5 more
- cpe:2.3:a:discourse:discourse:*:*:*:*:beta:*:*:*range: <3.4.0
- cpe:2.3:a:discourse:discourse:*:*:*:*:stable:*:*:*range: <3.3.3
- cpe:2.3:a:discourse:discourse:3.4.0:beta1:*:*:beta:*:*:*
- cpe:2.3:a:discourse:discourse:3.4.0:beta2:*:*:beta:*:*:*
- (no CPE)
- (no CPE)range: stable: <= 3.3.2
Patches
Vulnerability mechanics
References
1- github.com/discourse/discourse/security/advisories/GHSA-cqw6-rr3v-8fffnvdVendor Advisory
News mentions
0No linked articles in our index yet.