CVE-2023-28112
Last modified
CVE-2023-28112 is a high-severity vulnerability rated 8.1/10 on the CVSS scale. Discourse is an open-source discussion platform. Prior to version 3.1.0.beta3 of the `beta` and `tests-passed` branches, some user provided URLs were being passed to FastImage without SSRF protection. EPSS estimates a 0.58% chance of exploitation in the next 30 days.
Description
Discourse is an open-source discussion platform. Prior to version 3.1.0.beta3 of the `beta` and `tests-passed` branches, some user provided URLs were being passed to FastImage without SSRF protection. Insufficient protections could enable attackers to trigger outbound network connections from the Discourse server to private IP addresses. This affects any site running the `tests-passed` or `beta` branches versions 3.1.0.beta2 and prior. This issue is patched in version 3.1.0.beta3 of the `beta` and `tests-passed` branches. There are no known workarounds.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Discourse | Discourse | < 3.1.0 | — |
| Discourse | Discourse | <= 3.1.0 | — |
| Discourse | Discourse | 3.1.0 | Beta1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-28112?
How severe is CVE-2023-28112?
How do I fix CVE-2023-28112?
Are you affected by CVE-2023-28112?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
