CVE-2023-42451

CVSS V2 None CVSS V3 None
Description
Mastodon is a free, open-source social network server based on ActivityPub. Prior to versions 3.5.14, 4.0.10, 4.1.8, and 4.2.0-rc2, under certain circumstances, attackers can exploit a flaw in domain name normalization to spoof domains they do not own. Versions 3.5.14, 4.0.10, 4.1.8, and 4.2.0-rc2 contain a patch for this issue.
Overview
  • CVE ID
  • CVE-2023-42451
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-09-19T15:56:46.962Z
  • Last Modified Date
  • 2023-09-19T15:56:46.962Z
History
Created Old Value New Value Data Type Notes
2024-06-25 14:10:55 Added to TrackCVE