
CVE-2026-33408 Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, moderators were able to see the first 40 characters of p… https://www.cve.org/CVERecord?id=CVE-2026-33408
Post summary
The text announces a data‑leak vulnerability (CVE‑2026‑33408) in Discourse that lets moderators view the first 40 characters of content in pre‑2026.3.0 releases, with no evidence of exploit or mitigation mentioned.
