Lack of media type verification of Activity Streams objects allows impersonation of remote accounts · Advisory · mastodon/mastodon · GitHub
https://github.com/mastodon/mastodon/security/advisories/GHSA-jhrq-qvrm-qr36
これを報告するなどしていた
Conversation
Notices
-
Embed this notice
tesaguri ?? (tesaguri@fedibird.com)'s status on Sunday, 18-Feb-2024 23:11:48 JST tesaguri ??