Skip to content

[VULNERABILITY] Blacklist funkin.Assets.getLibrary - #7901

Open
charlesisfeline wants to merge 1 commit into
FunkinCrew:preview/public-playtestfrom
charlesisfeline:you-dont-get-no-library-lmao
Open

[VULNERABILITY] Blacklist funkin.Assets.getLibrary#7901
charlesisfeline wants to merge 1 commit into
FunkinCrew:preview/public-playtestfrom
charlesisfeline:you-dont-get-no-library-lmao

Conversation

@charlesisfeline

@charlesisfeline charlesisfeline commented Aug 9, 2026

Copy link
Copy Markdown
Contributor

PORT OF #7170

Description

apparently you can still access blacklisted packages via libraries...

I HAVE PLAYED THESE GAMES BEFORE

@github-actions github-actions Bot added status: pending triage Awaiting review. size: tiny A tiny pull request with 4 or fewer changes. pr: haxe PR modifies game code. labels Aug 9, 2026
@charlesisfeline charlesisfeline changed the title Blacklist getLibrary from scripts [VULNERABILITY] Blacklist funkin.Assets.getLibrary Aug 9, 2026
@NotHyper-474 NotHyper-474 added the type: security vulnerability Involves a security vulnerability within the game. label Aug 9, 2026
@charlesisfeline
charlesisfeline force-pushed the you-dont-get-no-library-lmao branch from 537d6b4 to d63acc5 Compare August 9, 2026 20:03
@charlesisfeline
charlesisfeline force-pushed the you-dont-get-no-library-lmao branch from d63acc5 to 4010327 Compare August 10, 2026 07:23
@Hundrec Hundrec added status: accepted PR was approved for contribution. If it's not already merged, it may be merged on a private branch. and removed status: pending triage Awaiting review. labels Aug 11, 2026
@Hundrec Hundrec added this to the 0.9.0 - Week 8 milestone Aug 11, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

pr: haxe PR modifies game code. size: tiny A tiny pull request with 4 or fewer changes. status: accepted PR was approved for contribution. If it's not already merged, it may be merged on a private branch. type: security vulnerability Involves a security vulnerability within the game.

Development

Successfully merging this pull request may close these issues.

4 participants