CVE security advisories and vulnerability history for mastodon by tootsuite.
36
Total CVEs
Published
0
In CISA KEV
Exploited in the wild
6
Public exploits
With known exploit
6.2
Avg CVSS
2022–2026
Last updated
Overview
tootsuite mastodon has 36 published CVE records since 2022, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 6 have a known public exploit. The average CVSS base score across scored CVEs is 6.2.
This page aggregates every publicly disclosed vulnerability (CVE) affecting tootsuite mastodon, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of tootsuite mastodon's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical4
High10
Medium19
Low3
In CISA’s Known Exploited Vulnerabilities catalog
0
None of tootsuite mastodon's CVEs are currently listed in CISA's KEV catalog.
Public exploits
6
6 of tootsuite mastodon's CVEs have a known public exploit available.
Affected versions and CVEs
Browse every tootsuite mastodon version named in a CVE, then pick one to see only the CVEs that affect it.
Common questions about tootsuite mastodon vulnerabilities.
How many CVEs does tootsuite mastodon have?
tootsuite mastodon has 36 published CVE records since 2022.
How many tootsuite mastodon CVEs are in CISA KEV?
None of tootsuite mastodon's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Are there public exploits for tootsuite mastodon vulnerabilities?
Yes — 6 of tootsuite mastodon's CVEs have a known public exploit.
Which versions of tootsuite mastodon are affected?
309 distinct tootsuite mastodon versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
What are the most common weakness types in tootsuite mastodon CVEs?
tootsuite mastodon's CVEs most often map to these CWE weakness types: CWE-770 (Allocation of Resources Without Limits or Throttling), CWE-918 (Server-Side Request Forgery (SSRF)), CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-862 (Missing Authorization).
How many critical tootsuite mastodon vulnerabilities are there?
tootsuite mastodon has 4 critical and 10 high-severity CVEs.
What is the average severity of tootsuite mastodon CVEs?
The average CVSS base score across tootsuite mastodon's scored CVEs is 6.2.