Discussion
Loading...

Post

Log in
  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Dan Phiffer
Dan Phiffer
@dphiffer@social.coop  ·  activity timestamp 3 weeks ago

⚠️ We're upgrading #SocialCoop to the latest version of Mastodon, v4.5.5. Apologies for the brief outage.

  • Copy link
  • Flag this post
  • Block
Dan Phiffer
Dan Phiffer
@dphiffer@social.coop replied  ·  activity timestamp 3 weeks ago

And we're back! Here is a kind of funny security issue that we've just patched:

“Mastodon versions before v4.3.18, v4.4.12, and v4.5.5 do not have a limit on the maximum number of poll options for remote posts, allowing attackers to create polls with a very large amount of options, greatly increasing resource consumption.”

https://github.com/mastodon/mastodon/security/advisories/GHSA-gg8q-rcg7-p79g

  • Copy link
  • Flag this comment
  • Block

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.2-alpha.7 no JS en
Automatic federation enabled
Log in
  • Explore
  • About
  • Members
  • Code of Conduct