CVE-2022-37458
Discourse through 2.8.7 allows admins to send invitations to arbitrary email addresses at an unlimited rate.
- Affected products
- Discourse
- Discourse
- ≤ 2.8.7
- Fix
- Available
- CVSS 3.1
- 7.2 HIGH
- EPSS
- 1.1% (64th percentile)
- NVD status
- Modified
- Published
- 2022-09-02
CVE-2022-37458 at NVD
1 known exploit for CVE-2022-37458
Proof-of-concept code and exploit modules indexed by Sploitus