
CVE-2026-33427 Discourse is an open-source discussion platform. Prior to versions 2026.3.0-latest.1, 2026.2.1, and 2026.1.2, an unauthenticated attacker can cause a legitimate Disco… https://www.cve.org/CVERecord?id=CVE-2026-33427
Post summary
The advisory notes that Discourse versions prior to 2026.3.0‑latest.1, 2026.2.1, and 2026.1.2 are vulnerable to an unauthenticated attack, though it provides no PoC, exploit, or evidence of active exploitation.
