I wonder if any folks have taken a good look at ? 🤔

I don't think we, infosec people, need a good look at it to be convinced that there are way too many dependencies, and thus that it is necessarily vulnerable in every way possible.

Also, if you are referring to the install base and not the software stack itself, then the vast majority of the install base is far from up-to-date. This, at the very least, has been studied.

@x_cli @sillystring yep. Old, unmaintained Mastodon instances will become the Wordpress of tomorrow. But on a much smaller scale.

