I received a security vulnerability report regarding NodeBB’s handling of Update and Delete activities.
A ReDoS (Regular Expression Denial of Service) vulnerability has been discovered in Fedify’s HTML parsing code. This vulnerability could allow a malicious federated server to cause denial of service by sending specially crafted HTML responses.
Local votes are a bit more private.
Default mode: public.