This message for everyone on the fediverse:

First, please ensure you go into your account settings and enable two/multi factor authentication. No, I mean do it right now. I’ll wait till you’re done.

Ok, thank you.

Now, if you are the admin of a mastodon instance, please go upgrade to 4.0.2 ASAP.

Background: portswigger.net/research/steal

Follow

@jerry The article also says that all three active branches were patched:
"However, they then released Mastodon 4.0.1, 3.5.5, and 3.4.10 to mitigate the issue."

Updating to any of these version should remediate this issue.

· · Web · 0 · 0 · 1
Sign in to participate in the conversation
NA Local 519

The social network of the future: No ads, no corporate surveillance, ethical design, and decentralization! Own your data with Mastodon!