Date: Tue, 28 Jul 2026 19:16:32 +0000 From: bugzilla-noreply@freebsd.org To: ports-bugs@FreeBSD.org Subject: [Bug 297125] net-im/mastodon: upgrade to 4.6.4 security release Message-ID: <bug-297125-7788@https.bugs.freebsd.org/bugzilla/>
index | next in thread | raw e-mail
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=297125 Bug ID: 297125 Summary: net-im/mastodon: upgrade to 4.6.4 security release Product: Ports & Packages Version: Latest Hardware: Any OS: Any Status: New Keywords: security Severity: Affects Many People Priority: --- Component: Individual Port(s) Assignee: ports-bugs@FreeBSD.org Reporter: smyru@FreeBSD.org Flags: maintainer-feedback? Mastodon has published a security release on 27th of July, which fixes the following issues: * HIGH: Denial of Service through insufficient authentication of statistics endpoints, https://github.com/mastodon/mastodon/security/advisories/GHSA-7jvv-fhmg-wpfw * HIGH: Personally-identifying information disclosure due to incorrect access control validation, https://github.com/mastodon/mastodon/security/advisories/GHSA-hx34-2pfw-2qfj * MODERATE: SSRF Protection Bypass via IPv4-compatible IPv6 Addresses, https://github.com/mastodon/mastodon/security/advisories/GHSA-vwhj-3g83-v276 --- Comment #1 from Bugzilla Automation <bugzilla@FreeBSD.org> --- Maintainer informed via mail -- You are receiving this mail because: You are the assignee for the bug.home | help
Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-297125-7788>
