Discourse is an open-source discussion platform. Prior to version 2.8.13 of the `stable` branch and version 2.9.0.beta14 of the `beta` and `tests-passed` branches, unauthorized users may learn of the existence of hidden tags and that they have been applied to topics that they have access to. This issue is patched in version 2.8.13 of the `stable` branch and version 2.9.0.beta14 of the `beta` and `tests-passed` branches. As a workaround, use the `disable_email` site setting to disable all emails to non-staff users.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2022-11-29T00:00:00

Updated: 2024-08-03T14:24:03.393Z

Reserved: 2022-11-28T00:00:00

Link: CVE-2022-46150

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-11-29T18:15:10.467

Modified: 2022-12-01T21:57:34.653

Link: CVE-2022-46150

cve-icon Redhat

No data.