Command Handling Flaw in VoidBot Open-Source by Death1Clown
CVE-2025-53943

8.7HIGH

Key Information:

Vendor
CVE Published:
16 July 2025

What is CVE-2025-53943?

VoidBot Open-Source, a customizable Discord bot, contains a vulnerability in its command handler mechanism. Versions 0.0.1 to 0.8.1 fail to enforce proper permission checks for certain administrative commands. Consequently, users lacking the necessary roles can execute sensitive actions such as banning or kicking members, and even shutting down the server. This oversight poses a risk to server integrity and operational stability. The issue is resolved in version 1.0.0.

Affected Version(s)

VoidBot_open-source >= 0.0.1, < 1.0.0

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-53943 : Command Handling Flaw in VoidBot Open-Source by Death1Clown