programming.dev
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
ruffsl to SecurityEnglish · 2 years ago

TootRoot | Mastodon had a Critical Security Vulnerability

youtube.com

external-link
message-square
1
link
fedilink
  • cross-posted to:
  • [email protected]
  • programming
6
external-link

TootRoot | Mastodon had a Critical Security Vulnerability

youtube.com

ruffsl to SecurityEnglish · 2 years ago
message-square
1
link
fedilink
  • cross-posted to:
  • [email protected]
  • programming
Mastodon had a Critical Security Vulnerability
youtube.com
external-link
In this video I discuss the recent security updates to Mastodon to fix critical security vulnerabilities that allowed for cross site scripting through oEmbed...

Security advisorys: https://github.com/mastodon/mastodon/security

  • ruffslOP
    link
    fedilink
    English
    arrow-up
    2
    ·
    2 years ago

    For anybody wondering what the Mastodon security issue is - CVE-2023-36460, you can send a toot which makes a webshell on instances that process said toot. #CVE202336460 #TootRoot

    • https://cyberplace.social/@GossiTheDog/110667416012211236

Security

security

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

A community for discussion about cybersecurity, hacking, cybersecurity news, exploits, bounties etc.

Rules :

  1. All instance-wide rules apply.
  2. Keep it totally legal.
  3. Remember the human, be civil.
  4. Be helpful, don’t be rude.

Icon base by Delapouite under CC BY 3.0 with modifications to add a gradient

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 4 users / day
  • 13 users / week
  • 211 users / month
  • 263 users / 6 months
  • 242 local subscribers
  • 887 subscribers
  • 86 Posts
  • 146 Comments
  • Modlog
  • mods:
  • LinearArray
  • BE: 0.19.11
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org