See Here, Here and Here for information about the current situation and the exploits being used.

— UPDATE

Lemm.ee Admin @sunarus responded Here, TLDR is that Lemm.ee isn’t vulnerable, would advise reading the message if you’re still concerned.

  • TWeaK
    link
    fedilink
    arrow-up
    2
    ·
    1 year ago

    It should be said that the version number is more of an indication than anything specific. I don’t think it would be hard for an instance to spoof its version number.

    Also, lemm.ee in particular has a few mods and tricks that might not be in the lemmy codebase yet - @sunaurus@lemm.ee has previously included new code he has pushed to the main stack before it has been accepted. This allowed us to have working versions of things before other instances.

    Point being, two instances with the same version can have different code and implementations.