Critical severity9.8NVD Advisory· Published Sep 22, 2019· Updated Jun 17, 2026
CVE-2018-21018
CVE-2018-21018
Description
Mastodon before 2.6.3 mishandles timeouts of incompletely established sessions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Mastodon/Mastodondescription
Patches
Vulnerability mechanics
References
4- github.com/tootsuite/mastodon/pull/9329nvdPatchThird Party Advisory
- github.com/tootsuite/mastodon/pull/9381nvdPatchThird Party Advisory
- github.com/tootsuite/mastodon/releases/tag/v2.6.2nvdRelease NotesThird Party Advisory
- github.com/tootsuite/mastodon/releases/tag/v2.6.3nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.