CVE-2025-69218 | Discourse prior 3.5.4/2025.11.2/2025.12.1/2026.1.0 Admin Report top_uploads authorization
A vulnerability identified as problematic has been detected in Discourse. Affected by this issue is the function top_uploads of the component Admin Report. The manipulation leads to incorrect authorization.
This vulnerability is traded as CVE-2025-69218. It is possible to initiate the attack remotely. There is no exploit available.
You should upgrade the affected component.