CVE-2024-34535
5.9MEDIUMIn Mastodon 4.1.6, API endpoint rate limiting can be bypassed by setting a crafted HTTP request header.
게시됨: 10/3/2024업데이트됨: 5/6/2025
설명
In Mastodon 4.1.6, API endpoint rate limiting can be bypassed by setting a crafted HTTP request header.
AI 분석AI 기반
영향받는 제품
joinmastodonmastodon
joinmastodonmastodon
참조
- https://github.com/mastodon/mastodon/security/advisories/GHSA-q3rg-xx5v-4mxhThird Party Advisory
- https://github.com/mastodon/mastodon/tagsRelease Notes