CVE-2021-41250
Summary
| CVE | CVE-2021-41250 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-11-05 23:15:00 UTC |
| Updated | 2023-07-17 15:17:00 UTC |
| Description | Python discord bot is the community bot for the Python Discord community. In affected versions when a non-blacklisted URL and an otherwise triggering filter token is included in the same message the token filter does not trigger. This means that by including any non-blacklisted URL moderation filters can be bypassed. This issue has been resolved in commit 67390298852513d13e0213870e50fb3cff1424e0 |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Pythondiscord | Bot | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Presence of non-blacklisted URL bypasses all other filters · Advisory · python-discord/bot · GitHub | CONFIRM | github.com | |
| Merge pull request from GHSA-j8c3-8x46-8pp6 · python-discord/bot@6739029 · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.