CVE-2019-19010: Fedoraproject Fedora
Critical severity, CVSS 9.8. EPSS: 2.3% chance of exploitation in the next 30 days.
Eval injection in the Math plugin of Limnoria (before 2019.11.09) and Supybot (through 2018-05-09) allows remote unprivileged attackers to disclose information or possibly have unspecified other impact via the calc and icalc IRC commands.
Affected products
- Fedoraproject Fedora: version 29 only; version 30 only; version 31 only
- Limnoria Project Limnoria: before 2019.11.09 (fixed in 2019.11.09)
Published 2019-11-16. Last modified 2026-06-17.