CVE-2024-34535

5.9MEDIUM

In Mastodon 4.1.6, API endpoint rate limiting can be bypassed by setting a crafted HTTP request header.

Published: 10/3/2024Updated: 5/6/2025

Description

In Mastodon 4.1.6, API endpoint rate limiting can be bypassed by setting a crafted HTTP request header.

AI AnalysisPowered by AI

Affected Products

joinmastodonmastodon
joinmastodonmastodon

References