Redon's vulnerability footprint centers on the Roblox Purchasing Hub, a payment and commerce component within a widely used gaming platform, where the observed weaknesses cluster around output encoding and escaping issues alongside improper default permission configurations. Treat this as a compact vendor profile; current severity, exploitation, and CVE counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Redon over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-31442HIGH Redon Hub is a Roblox Product Delivery Bot, also known as a Hub. In all hubs before version 1.0.2, all commands are capable of being ran by all users, including admin commands. Thi | Apr 8, 2024 | 8.8 | 24 | NO | NO |
CVE-2021-41191HIGH Roblox-Purchasing-Hub is an open source Roblox product purchasing hub. A security risk in versions 1.0.1 and prior allowed people who have someone's API URL to get product files wi | Oct 27, 2021 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Redon.
Media articles that mention a CVE ID that affects a product developed by Redon — matched by CVE ID, not by vendor name.