目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2026-27154— Discourse 跨站脚本漏洞

AI Predicted 6.1 Difficulty: Easy EPSS 0.17% · P6
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2026-27154の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
Discourse has XSS when editing a malicious post
ソース: NVD (National Vulnerability Database)
脆弱性説明
Discourse is an open source discussion platform. Prior to versions 2025.12.2, 2026.1.1, and 2026.2.0, a user full name can be evaluated as raw HTML when the following settings are set: `display_name_on_posts` => true; and `prioritize_username_in_ux` => false. Editing a post of a malicious user would trigger an XSS. Versions 2025.12.2, 2026.1.1, and 2026.2.0 patch the issue. No known workarounds are available.
ソース: NVD (National Vulnerability Database)
CVSS情報
N/A
ソース: NVD (National Vulnerability Database)
脆弱性タイプ
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
ソース: NVD (National Vulnerability Database)
脆弱性タイトル
Discourse 跨站脚本漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Discourse是Discourse开源的一套开源的社区讨论平台。该平台包括社区、电子邮件和聊天室等功能。 Discourse 2025.12.2之前版本、2026.1.1之前版本和2026.2.0之前版本存在跨站脚本漏洞,该漏洞源于特定设置下用户全名可能被评估为原始HTML,可能导致编辑恶意用户帖子时触发跨站脚本攻击。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
discoursediscourse < 2025.12.2 -

II. CVE-2026-27154の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2026-27154のインテリジェンス情報

登录查看更多情报信息。

Same Patch Batch · discourse · 2026-02-26 · 17 CVEs total

CVE-2026-262657.5 HIGHDiscourse has IDOR vulnerability in the directory items endpoint
CVE-2026-260787.5 HIGHDiscourse has authentication bypass vulnerability in the Patreon plugin webhook endpoint
CVE-2026-260776.5 MEDIUMDiscourse doesn't ensure webhooks require a token
CVE-2026-262075.4 MEDIUMDIscourse's discourse-policy plugin lacks post access check
CVE-2026-269734.3 MEDIUMDiscourse doesn't scope reviewable notes to user-visible reviewables
CVE-2026-28227Discourse Vulnerable to Unauthorized Topic Creation in Staff-Only Categories via Topic Tim
CVE-2026-28219Privilege Escalation via Mass Assignment Allows Regular Users to Set Topics as Global Bann
CVE-2026-28218Discourse's Fail-Open Access Control in Data Explorer Plugin Allows Unauthorized SQL Query
CVE-2026-27153Discourse doesn't prevent moderators from exporting user Chat DMs
CVE-2026-27152DIscourse has DM communication-preference bypass when adding members
CVE-2026-27162DIscourse doesn't prevent whispers to leak in excerpts
CVE-2026-27151Discourse doesn't validate destination topic when moving posts
CVE-2026-27150Discourse doesn't ensure guardian check when creating QueryGroupBookmark
CVE-2026-27149Discourse has SQL injection in PM tag filtering
CVE-2026-27021Discourse: Poll voters endpoint lacked post visibility checks
CVE-2026-26979Discourse: TL4 users are able to change status of restricted topics

IV. 関連脆弱性

V. CVE-2026-27154へのコメント

まだコメントはありません


コメントを残す