Supybot · Supybot · CVE-2019-19010
**Name of the Vulnerable Software and Affected Versions**
Limnoria versions prior to 2019.11.09
Supybot versions through 2018-05-09
**Description**
The issue allows remote unprivileged attackers to disclose information or possibly have unspecified other impact. This is achieved via the calc and icalc IRC commands in the Math plugin.
**Recommendations**
For Limnoria versions prior to 2019.11.09, update to version 2019.11.09 or later.
For Supybot versions through 2018-05-09, consider disabling the Math plugin until a patch is available. As a temporary workaround, restrict access to the calc and icalc IRC commands to minimize the risk of exploitation.