CVE-2026-31805 | Discourse up to 2026.1.1/2026.2.0/2026.3.0-latest.1 post_id[] authorization (GHSA-fgxm-prjv-g823)
A vulnerability labeled as problematic has been found in Discourse up to 2026.1.1/2026.2.0/2026.3.0-latest.1. This issue affects some unknown processing. Such manipulation of the argument post_id[] leads to incorrect authorization.
This vulnerability is uniquely identified as CVE-2026-31805. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.