
CVE-2026-33422 Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, the `ip_address` of a flagged user is exposed to any us… https://www.cve.org/CVERecord?id=CVE-2026-33422
Post summary
The text announces a CVE affecting Discourse, where flagged users’ IP addresses are inadvertently exposed in versions prior to 2026.3.0-latest.1, 2026.2.1, and 2026.1.2.
