Critical vulnerability was found in Discourse
Developers of Discourse, an open source platform, have released a security advisory to address a critical remote code execution (RCE) vulnerability (CVE-2021-41163) in Discourse versions 2.7.8 and earlier. Developers have released the patched version - 2.7.9 and they have provided workarounds – github.com.
25 October 2021