Update: there are additional reported vulnerabilities that I have been made aware of.
These have been shared with the Piefed Dev but no fixes yet in place.
Given this knowledge and the fact these exploits could be used to target vulnerable users and potentially access account data, I feel it is sensible to keep the instance offline until further fixes are in place.
