Conversation
Edited 8 days ago
i'm sorry about this one, i truly am

akkoma v3.15.1 has been released

THIS IS A CRITICAL SECURITY ISSUE

same process, backend only

explanation in thread below if you want to know why this happened, i don't want to dramapost in my release notes

[notwithstanding amd64_musl which is building, i wanted to get this post out fast (edit: it's done now)]
4
3
1
explanation of release
Show content
without wanting to sound too hecked off on public channels, we have without fail reported vulnerabilities we find to pleroma

a smaller attack surface is better for all of us, even if we don't agree with how they run things over there. we don't wish harm on them,
so if we can help them out a bit, we do

this includes the security part of today's 3.15.0, we told them we had found a vulnerability, and shared our fixes

they neglected to reciprocate and did not inform us of a very, very critical bug they found. this has caused me to have to rush a hotfix out today.

i don't want to have to rethink our developer relationship with them, but it does feel awfully one-sided about now. this has happened a concerning number
of times.
0
1
0

@akkoma

explanation in thread below
won’t federate
ihba won’t show replies for unauthenticated users

fedi moment

1
0
0
@akkoma As always thank you again for the quick fixes blobcatheart
0
0
0
@david @akkoma @blobcat blobcat is not an admin, i will care about it
1
0
0
@Jain @akkoma oops, i thought they was X3
1
0
0
@david @Jain @akkoma @blobcat blobcat is a cat that posts emojis
jain is the admin
quinn is not an admin despite popular misunderstanding
1
0
1
@tk @Jain @blobcat @david @akkoma pretty sure blobcat is mewmew or jain secretly posting emojis
1
0
0