Cogboard maintains a focused portfolio centered on the Red Discord Bot framework and its associated dashboard components, which serve as administration and monitoring tools for Discord communities. The recurring vulnerability signal reflects application-layer input-handling and authorization issues, including injection variants, code injection, and cross-site scripting, which are characteristic of web-based administration interfaces that parse and execute user-supplied content.
The number and severity of CVEs published that impact products developed by Cogboard over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-15140CRITICAL In Red Discord Bot before version 3.3.11, a RCE exploit has been discovered in the Trivia module: this exploit allows Discord users with specifically crafted usernames to inject co | Aug 21, 2020 | 9.6 | 28 | NO | NO |
CVE-2020-15147HIGH Red Discord Bot before versions 3.3.12 and 3.4 has a Remote Code Execution vulnerability in the Streams module. This exploit allows Discord users with specifically crafted "going l | Aug 21, 2020 | 8.5 | 27 | NO | NO |
CVE-2020-26249HIGH Red Discord Bot Dashboard is an easy-to-use interactive web dashboard to control your Redbot. In Red Discord Bot before version 0.1.7a an RCE exploit has been discovered. This expl | Dec 9, 2020 | 8.7 | 26 | NO | NO |
CVE-2020-15278HIGH Red Discord Bot before version 3.4.1 has an unauthorized privilege escalation exploit in the Mod module. This exploit allows Discord users with a high privilege level within the gu | Oct 28, 2020 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cogboard.
Media articles that mention a CVE ID that affects a product developed by Cogboard — matched by CVE ID, not by vendor name.