Isaac Janzen
6 exploits
Active since Jan 2023
Discourse: Admin-only report can be exported by moderators
CVSS 6.5
Discourse: Stored XSS in discourse-ai shared conversations onebox
CVSS 5.4
Discourse: Insufficient topic visibility check allows unauthorized poll manipulation in private categories
CVSS 4.3
Discourse: Missing post-level authorization allows whisper metadata disclosure
CVSS 4.3
Discourse: Improper Access Control in discourse-ai Allows Unauthorized Category Content Exposure
CVSS 2.7
Discourse < 2.9.0 - Information Disclosure
CVSS 5.5