Improper Restriction of Excessive Authentication Attempts in GitHub repository mastodon/mastodon prior to 4.0.0.
The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame.
Link | Tags |
---|---|
https://huntr.dev/bounties/2f96f990-01c2-44ea-ae47-58bdb3aa455b | third party advisory |
https://github.com/mastodon/mastodon/commit/21fd25a269cca742af431f0d13299e139f267346 | third party advisory patch |