Discourse: 3.4.7 → 2026.1.4
Discourse · upgrade impact · Official site ↗
Fixed by upgrading to 2026.1.4 iVulnerabilities that affect 3.4.7 but no longer affect 2026.1.4 — the security gain from this upgrade, by exploited status then exploitation probability.
Exploited first, then by exploitation probability (EPSS).
CVE-2021-41082 HIGH EPSS 2% ✓ cleared in 2026.1.4 CVE-2025-48954 HIGH EPSS 1% ✓ cleared in 2026.1.4 CVE-2025-53102 CRITICAL EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-48877 CRITICAL EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-46813 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-45775 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-48053 HIGH EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-68662 HIGH EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-27021 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-59337 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-24742 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-61598 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-23743 HIGH EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-44786 HIGH EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-64528 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-26077 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-26265 HIGH EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-68666 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-68934 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-58055 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-44784 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-27162 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-27149 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-26078 HIGH EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-21865 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-68659 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-68660 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-44779 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-67723 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-69218 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-47264 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-48062 HIGH EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-28219 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-45085 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-66488 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-54411 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2025-58054 LOW EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-28227 LOW EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-47263 MEDIUM EPSS 0% ✓ cleared in 2026.1.4 CVE-2026-44780 MEDIUM EPSS 0% ✓ cleared in 2026.1.4Still open in 2026.1.4 iKnown vulnerabilities that affect 2026.1.4 too — upgrading to it does not clear these.
These affect 2026.1.4 as well — a later release may be needed.
CVE-2026-27166 MEDIUM EPSS 0% → fixed in 2026.3.0