It's a good thing that the #Mastodon #SDF instance patched this quickly though despite the day plus long outage. Tell your #admins to patch this ASAP! https://github.com/mastodon/mastodon/security/advisories/GHSA-3fjr-858r-92rw
More coverage here: https://www.theregister.com/2024/02/02/critical_vulnerability_in_mastodon_is/
🚨 Mastodon security patch released
The :mastodon: Mastodon team has released new versions that fix a major security issue.
It is strongly recommended that admins upgrade to the latest version of their branch ASAP.
⚠️ Fix insufficient origin validation
➡️ https://github.com/mastodon/mastodon/security/advisories/GHSA-3fjr-858r-92rw
More information about the security patches are available in the changelog:
4.2.5 https://github.com/mastodon/mastodon/releases/tag/v4.2.5
4.1.13 https://github.com/mastodon/mastodon/releases/tag/v4.1.13
4.0.13 https://github.com/mastodon/mastodon/releases/tag/v4.0.13
3.5.17 https://github.com/mastodon/mastodon/releases/tag/v3.5.17
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.