Discord · Red Discord Bot · CVE-2020-15147
**Name of the Vulnerable Software and Affected Versions**
Red Discord Bot versions prior to 3.3.12 and 3.4
**Description**
The issue allows Discord users with specifically crafted "going live" messages to inject code into the Streams module's going live message, potentially leading to destructive actions and/or access to sensitive information.
**Recommendations**
For versions prior to 3.3.12 and 3.4, update to version 3.3.12 or 3.4 to completely patch the issue.
As a temporary workaround, consider unloading the Streams module with `unload streams` to render the exploit not accessible.