馃敀 Security Release: BotKit 0.3.1

We've released BotKit 0.3.1 with an important security fix.

This update addresses CVE-2025-68475 (High severity, CVSS 7.5), a ReDoS vulnerability in Fedify's HTML parsing that could cause denial of service.

If you're using BotKit 0.3.x, please upgrade to 0.3.1 as soon as possible.

0

If you have a fediverse account, you can quote this note from your own instance. Search https://hollo.social/@botkit/019b3bbf-e202-72d0-8d47-6b1571deba63 on your instance and quote it. (Note that quoting is not supported in Mastodon.)