Why Nostr? What is Njump?
2024-06-03 00:12:34
in reply to

silverpill on Nostr: ​ Yes, webfinger is out of scope, and as far as I know Pleroma was vulnerable ...

Yes, webfinger is out of scope, and as far as I know Pleroma was vulnerable because it didn't do proper validation during reverse webfinger lookups... Is that right?
I don't know much about it. Mitra doesn't perform reverse webfinger lookups at all
Author Public Key
npub1df0nthpgzfmvxrzj0cfypmmt45l0y770j260auqhm3l45hp3uhkqx27gmw