Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Highparker02311

#36573of 53,635
7.5Total CVSS
Vulnerabilities · 1
PT-2021-23164
7.5
2021-10-27
Roblox · Roblox-Purchasing-Hub · CVE-2021-41191
**Name of the Vulnerable Software and Affected Versions** Roblox-Purchasing-Hub versions 1.0.1 and prior **Description** A security risk in Roblox-Purchasing-Hub allowed individuals with access to someone's API URL to obtain product files without an API key. **Recommendations** For versions 1.0.1 and prior, update to version 1.0.2 to resolve the issue. As a temporary workaround for versions 1.0.1 and prior, consider adding `@require apikey` in `BOT/lib/cogs/website.py` under the route for "/v1/products".