Budabot is a narrowly scoped bot framework and automation tool where the documented vulnerability footprint centers on a single product line. The recurring exposure reflects OS command injection weaknesses, a characteristic risk in automation and scripting environments where user input or external data flows into system-level command construction. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Budabot over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-19290CRITICAL In modules/HELPBOT_MODULE in Budabot 0.6 through 4.0, lax syntax validation allows remote attackers to perform a command injection attack against the PHP daemon with a crafted comm | Nov 30, 2018 | 9.8 | 31 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Budabot.
Media articles that mention a CVE ID that affects a product developed by Budabot — matched by CVE ID, not by vendor name.