CVE-2021-37522 Information

Description

SQL injection vulnerability in HKing2802 Locke-Bot 2.0.2 allows remote attackers to run arbitrary SQL commands via crafted string to /src/db.js /commands/mute.js /modules/event/messageDelete.js.

Reference

https://gist.github.com/0xHornet/9789d70454a47764b611afc8e84d6c0d https://cinquito.github.io/jekyll/update/2021/10/17/discord_bot_sqli.html

Share on: