#VU126976 Inefficient regular expression complexity in Mastodon
Published: September 30, 2024 / Updated: April 23, 2026
Mastodon
Mastodon
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to inefficient regular expression complexity in regular expressions when processing specifically crafted queries. A remote attacker can send specifically crafted queries to cause a denial of service.
This does not affect servers running on Ruby 3.3.