Vendor
Pixelfed
Products
1
CVEs
4
Across products
4
Status
Private
Products
1- 4 CVEs
Recent CVEs
4| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-0901 | Med | 0.28 | 5.3 | 0.01 | Feb 18, 2023 | Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository pixelfed/pixelfed prior to 0.11.4. | ||
| CVE-2023-0914 | Med | 0.27 | 5.3 | 0.01 | Feb 19, 2023 | Improper Authorization in GitHub repository pixelfed/pixelfed prior to 0.11.4. | ||
| CVE-2025-30741 | Med | 0.21 | 4.3 | 0.00 | Mar 25, 2025 | Pixelfed before 0.12.5 allows anyone to follow private accounts and see private posts on other Fediverse servers. This affects users elsewhere in the Fediverse, if they otherwise have any followers from a Pixelfed instance. | ||
| CVE-2024-25108 | 0.00 | — | 0.01 | Feb 12, 2024 | Pixelfed is an open source photo sharing platform. When processing requests authorization was improperly and insufficiently checked, allowing attackers to access far more functionality than users intended, including to the administrative and moderator functionality of the… |
- risk 0.28cvss 5.3epss 0.01
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository pixelfed/pixelfed prior to 0.11.4.
- risk 0.27cvss 5.3epss 0.01
Improper Authorization in GitHub repository pixelfed/pixelfed prior to 0.11.4.
- risk 0.21cvss 4.3epss 0.00
Pixelfed before 0.12.5 allows anyone to follow private accounts and see private posts on other Fediverse servers. This affects users elsewhere in the Fediverse, if they otherwise have any followers from a Pixelfed instance.
- CVE-2024-25108Feb 12, 2024risk 0.00cvss —epss 0.01
Pixelfed is an open source photo sharing platform. When processing requests authorization was improperly and insufficiently checked, allowing attackers to access far more functionality than users intended, including to the administrative and moderator functionality of the…