Threats Tagged 'cve-2026-24332'
View all threats tagged with 'cve-2026-24332'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-24332'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-24332 is a medium-severity vulnerability in Discord's WebSocket API service that allows an attacker to distinguish users who are Invisible from those who are truly offline. The issue arises because Invisible users appear in the presences array with a status of "offline," while offline users are omitted entirely. This discrepancy leaks information about user presence state contrary to the UI's claim that Invisible users appear offline. Exploitation requires network access and authenticated privileges but no user interaction. Although it does not impact confidentiality beyond presence state disclosure and does not affect integrity or availability, it can be used for user tracking or targeted social engineering. European organizations using Discord, especially those with high collaboration needs, should be aware of this privacy leak. Mitigations include monitoring API responses for unexpected presence data and advocating for Discord to patch the inconsistency. Countries with high Discord usage and active online communities, such as the UK, Germany, France, and the Netherlands, are most likely affected. The vulnerability has a CVSS score of 4.3, reflecting its limited but notable privacy impact. Join the discussion | CVE Database V5 | 01/22/2026, 08:10:44 UTC Added: 01/22/2026, 08:20:56 UTC |
Showing 1 to 1 of 1 result