VYPR

RubyGems package

discordrb

pkg:gem/discordrb

Vulnerabilities (1)

  • CVE-2023-28102Mar 27, 2023
    affected < 3.4.3fixed 3.4.3

    discordrb is an implementation of the Discord API using Ruby. In discordrb before commit `91e13043ffa` the `encoder.rb` file unsafely constructs a shell string using the file parameter, which can potentially leave clients of discordrb vulnerable to command injection. The library