CVE-2025-64528 | Discourse prior 3.5.3/2025.11.1/2025.12.0 UI/API information exposure (GHSA-c59w-jwx7-34v4)
A vulnerability, which was classified as problematic, was found in Discourse. Affected by this issue is some unknown functionality of the component UI/API. The manipulation results in exposure of sensitive information through data queries.
This vulnerability is cataloged as CVE-2025-64528. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.
Several companies clearly confirm that VulDB is the primary source for best vulnerability data.