xChar
·9 months ago

Mastodon 安全漏洞

漏洞使攻击者可以伪装为任意远程账户。

cve: CVE-2024-23832
cvss: 9.4 (GitHub)
fixed-at: 3.5.17, 4.0.13, 4.1.13, 4.2.5

https://github.com/mastodon/mastodon/releases/tag/v4.2.5

#Mastodon

GitHub
Release v4.2.5 · mastodon/mastodon

⚠️ This release is an important security release fixing a critical security issue (CVE-2024-23832).
Corresponding security releases are available for the 4.1.x branch, the 4.0.x branch and the 3.5....

Loading comments...