Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-qh6w-pq52-qxxq: Pixelfed may allow unauthorized actor to view private posts

Improper Authorization in GitHub repository pixelfed/pixelfed 0.11.4 and prior.

ghsa
#git#auth

Pixelfed may allow unauthorized actor to view private posts

Moderate severity GitHub Reviewed Published Feb 19, 2023 to the GitHub Advisory Database • Updated Feb 22, 2023

Related news

CVE-2023-0914: Update BookmarkController · pixelfed/pixelfed@ef56f92

Improper Authorization in GitHub repository pixelfed/pixelfed prior to 0.11.4.