Required CVE Record Information
Description
Mastodon before 2.6.3 mishandles timeouts of incompletely established sessions.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- https://github.com/tootsuite/mastodon/releases/tag/v2.6.2 x_transferred
- https://github.com/tootsuite/mastodon/releases/tag/v2.6.3 x_transferred
- https://github.com/tootsuite/mastodon/pull/9329 x_transferred
- https://github.com/tootsuite/mastodon/pull/9381 x_transferred