{"id":"CVE-2021-29493","details":"Kennnyshiwa-cogs contains cogs for Red Discordbot. An RCE exploit has been found in the Tickets module of kennnyshiwa-cogs. This exploit allows discord users to craft a message that can reveal sensitive and harmful information. Users can upgrade to version 5a84d60018468e5c0346f7ee74b2b4650a6dade7 to receive a patch or, as a workaround, unload tickets to render the exploit unusable.","aliases":["GHSA-f4j2-2cwr-h473"],"modified":"2026-07-08T06:27:45.105726153Z","published":"2021-05-06T20:15:09.867Z","database_specific":{"unresolved_ranges":[{"vendor_product":"kennnyshiwa-cogs_project:kennnyshiwa-cogs","cpes":["cpe:2.3:a:kennnyshiwa-cogs_project:kennnyshiwa-cogs:*:*:*:*:*:*:*:*"],"extracted_events":[{"fixed":"2021-05-05"}],"source":"CPE_RANGE"}]},"references":[{"type":"FIX","url":"https://github.com/kennnyshiwa/kennnyshiwa-cogs/commit/5a84d60018468e5c0346f7ee74b2b4650a6dade7"},{"type":"FIX","url":"https://github.com/kennnyshiwa/kennnyshiwa-cogs/security/advisories/GHSA-f4j2-2cwr-h473"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/kennnyshiwa/kennnyshiwa-cogs","events":[{"introduced":"0"},{"fixed":"5a84d60018468e5c0346f7ee74b2b4650a6dade7"}],"database_specific":{"source":"REFERENCES"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-29493.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}