CVE-2023-0901: Pixelfed

Medium severity, CVSS 5.3. EPSS: 0.6% chance of exploitation in the next 30 days.

Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository pixelfed/pixelfed prior to 0.11.4.

Affected products

  • Pixelfed Pixelfed: before 0.11.4 (fixed in 0.11.4)

Published 2023-02-18. Last modified 2026-06-17.