Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-24755

Опубликовано: 01 фев. 2024
Источник: nvd
CVSS3: 4.3
CVSS3: 5.3
EPSS Низкий

Описание

discourse-group-membership-ip-block is a discourse plugin that adds support for adding users to groups based on their IP address. discourse-group-membership-ip-block was sending all group custom fields to the client, including group custom fields from other plugins which may expect their custom fields to remain secret.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:discourse:group_membership_ip_blocks:-:*:*:*:*:*:*:*

EPSS

Процентиль: 41%
0.00194
Низкий

4.3 Medium

CVSS3

5.3 Medium

CVSS3

Дефекты

CWE-200
NVD-CWE-noinfo

EPSS

Процентиль: 41%
0.00194
Низкий

4.3 Medium

CVSS3

5.3 Medium

CVSS3

Дефекты

CWE-200
NVD-CWE-noinfo