crates.io package
lemmy_server
pkg:cargo/lemmy_server
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2024-23649 | — | >= 0.17.0, < 0.19.1 | 0.19.1 | Jan 24, 2024 | Lemmy is a link aggregator and forum for the fediverse. Starting in version 0.17.0 and prior to version 0.19.1, users can report private messages, even when they're neither sender nor recipient of the message. The API response to creating a private message report contains the pri |
- CVE-2024-23649Jan 24, 2024affected >= 0.17.0, < 0.19.1fixed 0.19.1
Lemmy is a link aggregator and forum for the fediverse. Starting in version 0.17.0 and prior to version 0.19.1, users can report private messages, even when they're neither sender nor recipient of the message. The API response to creating a private message report contains the pri