描述
In Mastodon 4.1.6, API endpoint rate limiting can be bypassed by setting a crafted HTTP request header.
AI分析AI驱动
受影响产品
joinmastodonmastodon
joinmastodonmastodon
参考资料
- https://github.com/mastodon/mastodon/security/advisories/GHSA-q3rg-xx5v-4mxhThird Party Advisory
- https://github.com/mastodon/mastodon/tagsRelease Notes