{"id":"CVE-2021-32632","details":"Pajbot is a Twitch chat bot. Pajbot versions prior to 1.52 are vulnerable to cross-site request forgery (CSRF). Hosters of the bot should upgrade to `v1.52` or `stable` to install the patch or, as a workaround, can add one modern dependency.","aliases":["GHSA-wmfr-qrg4-qc3h"],"modified":"2026-07-09T10:52:46.604376Z","published":"2021-05-20T16:15:08.247Z","references":[{"type":"ADVISORY","url":"https://github.com/pajbot/pajbot/releases/tag/v1.52"},{"type":"FIX","url":"https://github.com/pajbot/pajbot/security/advisories/GHSA-wmfr-qrg4-qc3h"},{"type":"EVIDENCE","url":"https://gist.github.com/Melonify/d8e5d70cdc1bebb871f72dc79d69ac60"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/pajbot/pajbot","events":[{"introduced":"0"},{"fixed":"ba9dc5ce6ab1c40f5a8faec9d15c7190826614c0"}],"database_specific":{"cpe":"cpe:2.3:a:pajbot:pajbot:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"1.52"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["v1.51","v1.50","v1.49","v1.48","v1.47","v1.46","v1.45","v1.44","v1.43","v1.42","v1.41","v1.40","v1.39","v1.38","v1.37","v1.35"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-32632.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"}]}