A vulnerability classified as problematic has been found in Discourse up to 2026.1.5/2026.5.1/2026.6.0. The impacted element is an unknown function. This manipulation causes information disclosure.

This vulnerability is tracked as CVE-2026-72726. The attack is possible to be carried out remotely. No exploit exists.

It is recommended to upgrade the affected component.