VYPR

crates.io package

lemmy_server

pkg:cargo/lemmy_server

Vulnerabilities (1)

  • CVE-2024-23649Jan 24, 2024
    affected >= 0.17.0, < 0.19.1fixed 0.19.1

    Lemmy is a link aggregator and forum for the fediverse. Starting in version 0.17.0 and prior to version 0.19.1, users can report private messages, even when they're neither sender nor recipient of the message. The API response to creating a private message report contains the pri