FOSSBots/MirahezeBots

FOSSBots/MirahezeBots

Releases10
Frequency4 months 11 hours
Last Release
Stars12
IRC bot that is customization, must use with an existing sopel install for the files to do anything

CVE History

CVEPublishedCVSS v3CVSS v2
7.7 HIGH4 MEDIUM

In the Channelmgnt plug-in for Sopel (a Python IRC bot) before version 1.0.3, malicious users are able to op/voice and take over a channel. This is an ACL bypass vulnerability. This plugin is bundled with MirahezeBot-Plugins with versions from 9.0.0 and less than 9.0.2 affected. Version 9.0.2 includes 1.0.3 of channelmgnt, and thus is safe from this vulnerability. See referenced GHSA-23pc-4339-95vg.