Web Client Vulnerability in Misskey Open Source Social Media Platform
CVE-2026-46714
5.1MEDIUM
What is CVE-2026-46714?
Misskey, an open-source federated social media platform, contains a vulnerability that can lead to significant performance degradation or crash of the web client when a malformed theme is applied. This flaw affects versions from 8.63.0 up to, but not including, 2026.5.4. To mitigate this issue, users are encouraged to update to version 2026.5.4, where the problem has been addressed.
Affected Version(s)
misskey >= 8.63.0, < 2026.5.4
