PT-2026-48715 · Quest Bot · Quest-Bot
CVE-2026-47176
·
Published
2026-06-11
·
Updated
2026-06-11
CVSS v4.0
5.7
Medium
| Vector | AV:N/AC:L/AT:P/PR:H/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Quest Bot versions prior to 1.0.4
Description
A user with permissions to configure bot settings can enable logging and select a logging channel they have access to. The bot then logs the contents of deleted and edited messages from all channels it can access, including private channels that the configuring user is not authorized to view.
Recommendations
Update to version 1.0.4.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Quest-Bot