Thanks for the heads up! Sounds serious. Keeping fingers crossed that it will get fixed quickly.
this post was submitted on 10 Jul 2023
32 points (97.1% liked)
Lemmy NSFW
11864 readers
267 users here now
Updates about lemmynsfw.com
founded 1 year ago
MODERATORS
Good luck. The real problem is that bugs like this in your code that lead to easy XSS script loads like this tend to point to a bigger problem.
I agree. There needs to be an audit of lemmy entire source.
This is on top of the privacy concerns and huge potential for vote manipulation.
What are these concerns and are they unique to Lemmy vs other fediverse type software like Mastodon?
The issue seems resolved according to lemm.ee