[-] [email protected] 32 points 2 years ago* (last edited 2 years ago)

This has nothing to do with XSS, it is a simple HTML injection vulnerability, and it can only be exploited by instance admins.

Also Lemmy.world appears to have been running a custom frontend so it’s hard to say how widespread the affects of this are.

Gamingodcat

0 post score
0 comment score
joined 2 years ago