20240710-04-Sharp-flowered-rush-in-an-nature-reserve-764x400.jpg

Fediverse Report – #110

A vulnerability in Pixelfed caused private posts from other platforms to leak, a post-mortem on the CSAM scanner from IFTAS, and Fediforum has been cancelled.

Pixelfed vulnerability impacts private posts across most of the fediverse

The fediverse suffered from a significant breach for private accounts, that affects the large majority of fediverse servers, due to a vulnerability in the Pixelfed software. What is notable about the situation is that the software vulnerability is in Pixelfed, but the affected accounts are not exclusive to Pixelfed: accounts on Mastodon and other fediverse software with a form of private accounts are also vulnerable.

Continue reading on The Fediverse Report...