Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Bobdotcom

#30326of 53,619
8.7Total CVSS
Vulnerabilities · 1
PT-2022-23123
8.7
2022-08-18
Pypi · Py-Cord · CVE-2022-36024
**Name of the Vulnerable Software and Affected Versions** py-cord version 2.0.0 **Description** The issue affects py-cord, a Python API wrapper for Discord, allowing remote shutdown of bots if they are added to a server with the `application.commands` scope without the `bot` scope. It appears that all public bots using slash commands are affected. **Recommendations** For version 2.0.0, upgrade to version 2.0.1 to resolve the issue. As a temporary workaround, consider avoiding the addition of bots to servers with the `application.commands` scope without the `bot` scope until a patch is applied. There are currently no other recommended workarounds.