Vulnerability Description
Pajbot is a Twitch chat bot. Pajbot versions prior to 1.52 are vulnerable to cross-site request forgery (CSRF). Hosters of the bot should upgrade to `v1.52` or `stable` to install the patch or, as a workaround, can add one modern dependency.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Pajbot | Pajbot | < 1.52 |
Related Weaknesses (CWE)
References
- https://gist.github.com/Melonify/d8e5d70cdc1bebb871f72dc79d69ac60ExploitThird Party Advisory
- https://github.com/pajbot/pajbot/releases/tag/v1.52Third Party Advisory
- https://github.com/pajbot/pajbot/security/advisories/GHSA-wmfr-qrg4-qc3hPatchThird Party Advisory
- https://gist.github.com/Melonify/d8e5d70cdc1bebb871f72dc79d69ac60ExploitThird Party Advisory
- https://github.com/pajbot/pajbot/releases/tag/v1.52Third Party Advisory
- https://github.com/pajbot/pajbot/security/advisories/GHSA-wmfr-qrg4-qc3hPatchThird Party Advisory
FAQ
What is CVE-2021-32632?
CVE-2021-32632 is a vulnerability with a CVSS score of 2.4 (LOW). Pajbot is a Twitch chat bot. Pajbot versions prior to 1.52 are vulnerable to cross-site request forgery (CSRF). Hosters of the bot should upgrade to `v1.52` or `stable` to install the patch or, as a w...
How severe is CVE-2021-32632?
CVE-2021-32632 has been rated LOW with a CVSS base score of 2.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-32632?
Check the references section above for vendor advisories and patch information. Affected products include: Pajbot Pajbot.