Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2023-38706
Description:Discourse is an open-source discussion platform. Prior to version 3.1.1 of the `stable` branch and version 3.2.0.beta1 of the `beta` and `tests-passed` branches, a malicious user can create an unlimited number of drafts with very long draft keys which may end up exhausting the resources on the server. The issue is patched in version 3.1.1 of the `stable` branch and version 3.2.0.beta1 of the `beta` and `tests- passed` branches. There are no known workarounds.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2023-38706
https://github.com/discourse/discourse/security/advisories/GHSA-7wpp-4pqg-gvp8
https://github.com/discourse/discourse/security/advisories/GHSA-7wpp-4pqg-gvp8




© 1998-2025 E-Soft Inc. All rights reserved.