Is Mastodon 1.6.1 patched?
Current stable (4.5.11): 100/100
1.6.1 has 12 open critical-or-high vulnerabilities. Run 4.3.22 or later to clear them. See what 4.3.22 fixes →
Summary iPlain-English security status for Mastodon 1.6.1, built from its CVEs, active-exploitation data, end-of-life date and latest release.
Mastodon 1.6.1 is part of the 1.6 release line. 28 known vulnerabilities affect it. The minimum safe version is 4.3.22 — upgrade to it or later to clear the open critical/high issues. The latest supported Mastodon release is 4.5.11.
Known issues affecting 1.6.1
Exploited first, then by exploitation probability.
CVE-2022-0432 MEDIUM EPSS 4% → fixed in 3.5.0 CVE-2018-21018 CRITICAL EPSS 3% → fixed in 2.6.3 CVE-2024-23832 CRITICAL EPSS 2% → fixed in 4.2.5 CVE-2022-24307 CRITICAL EPSS 1% → fixed in 3.4.6 CVE-2023-36461 HIGH EPSS 1% → fixed in 4.1.3 CVE-2023-36459 CRITICAL EPSS 1% → fixed in 4.1.3 CVE-2022-2166 CRITICAL EPSS 1% → see advisory CVE-2022-46405 HIGH EPSS 1% → see advisory CVE-2022-31263 MEDIUM EPSS 1% → fixed in 3.5.0 CVE-2023-42451 HIGH EPSS 1% → fixed in 4.1.8 CVE-2026-33868 MEDIUM EPSS 1% → fixed in 4.5.8 CVE-2024-25623 HIGH EPSS 1% → fixed in 4.2.7 CVE-2026-23962 HIGH EPSS 0% → fixed in 4.5.5 CVE-2024-25618 MEDIUM EPSS 0% → fixed in 4.2.6 CVE-2026-23961 MEDIUM EPSS 0% → fixed in 4.5.5 CVE-2026-25540 MEDIUM EPSS 0% → fixed in 4.5.6 CVE-2024-34535 MEDIUM EPSS 0% → see advisory CVE-2024-25619 LOW EPSS 0% → fixed in 4.2.6 CVE-2025-27399 MEDIUM EPSS 0% → fixed in 4.3.4 CVE-2026-23963 MEDIUM EPSS 0% → fixed in 4.5.5Other Mastodon versions
Check another release line of Mastodon.
Frequently asked
Is Mastodon 1.6.1 patched?
Mastodon 1.6.1 has 12 open critical-or-high vulnerabilities. The minimum safe version is 4.3.22 — upgrade to 4.3.22 or later to clear them.
What version should I upgrade Mastodon 1.6.1 to?
Upgrade Mastodon 1.6.1 to at least 4.3.22 to clear its 12 open critical-or-high vulnerabilities.
What is the latest version of Mastodon?
The latest supported Mastodon release is 4.5.11.
Is Mastodon 1.6.1 still receiving security updates?
Yes — the 1.6 line is still supported and receiving security updates. The latest release is 4.5.11.
Informational only, from public data (NVD · CISA KEV · EPSS · endoflife.date), and can lag or miss vendor-specific fixes. Always confirm against Mastodon's official advisory before you patch or upgrade — Mastodon official site ↗