### Summary
Due to insufficient origin validation in all Mastodon, attackers can impersonate and take over any remote account.
Every Mastodon version prior to 3.5.17 is vulnerable, as well as...
If your instance is not up to date (see footer), you can pass this along to your admins to check
Every barrier that slows down attacks a little is worth it when you are trying to buy time so people can apply emergency updates. It’s not about stopping them from ever figuring it out.
Every barrier that slows down attacks a little is worth it when you are trying to buy time so people can apply emergency updates. It’s not about stopping them from ever figuring it out.