NeuromatchAcademy / mastodon

A glitchy but lovable microblogging server
https://glitch-soc.github.io/docs/
GNU Affero General Public License v3.0
7 stars 2 forks source link

Merge upstream - CVE-2024-23832 #39

Closed sneakers-the-rat closed 9 months ago

sneakers-the-rat commented 9 months ago

https://github.com/mastodon/mastodon/security/advisories/GHSA-3fjr-858r-92rw

Collecting compatibility changes that need to be made here before merging :) Don't try and code review this 1000 commit catchup

sneakers-the-rat commented 9 months ago

whoop whoop. tests pass. changed MathJaX nonce handling to avoid errors in end to end testing