This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Nonebot First view 2024-02-09
Product Nonebot Last view 2024-02-09
Version Type Application
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:nonebot:nonebot:*:*:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:beta1:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:alpha16:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:beta2:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:beta3:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:beta4:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:beta5:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:rc1:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:rc2:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:rc3:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:rc4:*:*:*:*:*:* 1
cpe:2.3:a:nonebot:nonebot:2.0.0:-:*:*:*:*:*:* 1

Related : CVE

  Date Alert Description
6.5 2024-02-09 CVE-2024-21624

nonebot2 is a cross-platform Python asynchronous chatbot framework written in Python. This security advisory pertains to a potential information leak (e.g., environment variables) in instances where developers utilize `MessageTemplate` and incorporate user-provided data into templates. The identified vulnerability has been remedied in pull request #2509 and will be included in versions released from 2.2.0. Users are strongly advised to upgrade to these patched versions to safeguard against the vulnerability. A temporary workaround involves filtering underscores before incorporating user input into the message template.