BookExploitFix icon

BookExploitFix -----

Fixes an exploit allowing hack clients to create books with JSON commands




Version: 1.4
Does not work. simple as that. 1.21.1 , major dupe issue found with this plugin installed using book xploits

Version: 1.4
Wonderful plugin. I have been using it for over 6 years and it has been a champ.

Version: 1.4
1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ1.21 PLZ

Version: 1.3
I didn't realize that Creative mode players can use a hacked client to create malicious books. I thought this was fixed ages ago. This is a very useful plugin for anyone who allows Creative mode players on their server.

Version: 1.3
Books are a crucial part of minecraft and when they can be exploited, that's a very big issue. I'm happy theres guys like minoneer who dedicate their time to making plugins in bemeans of keeping minecraft's gameplay secure as a whole!

Version: 1.2
This plugin definitely does what it claims on the tin! it seems to work well, only reason its 4 stars instead of 5 is because it should have a bypass permission, or a way to add certain books to be ignored
-
Author's response
Thanks for your feedback!
You can add a whitelist of commands / urls in the config, and also restrict it to certain worlds (e.g. your creative worlds).
There is intentionally no bypass permission, since those players with the most permissions can do the most damage when accidentally running a command.

Version: 1.1
5 because my prior complaint was addressed and fixed. I love the response and the detail in it, enlightening me on all that was needed for it to be updated.

Thank you!

Version: 0.15
While this plugin works, updates are slow and servers are left vulnerable to these exploits while waiting. This is frustrating as updating the plugin is trivial. Sadly, it imports the net.minecraft server classes of the specified version instead of using Java reflection to dynamically load the necessary classes. The core of the fix has not changed since 1.8.
-
Author's response
Hi, updating the plugin to 1.16 was not trivial, as the underlying code changed significantly. This is also why using reflection is not a good solution - method names and signatures kept changing several times.

I took some time to completely rewrite it against the now extended Spigot API, which will significantly improve the maintainability and compatibility going forward :)

Version: 0.15
Good! Good! Good! Good! Good! Good! Good! Good! Good! Good! Good! Good! Good! Good!

Version: 0.15
ill give it a 2 sense it doesn't make the server crash with jigaws servercrasher mode set to the tothedumpster but it still lags the crap out of it where it cant be playable
-
Author's response
Preventing server crashes due to malicious packages is not the purpose of this plugin. Please do not review plugins on tasks they were never meant to do.

Version: 0.14
Absolutely brilliant. Supposedly the exploit is patched for some versions but why risk it? The included command allows it to be easily tested too which is a nice plus.

Version: 0.14
¡Un muy gran complemento, gracias por ayudar a mejorar la comunidad en contra de los hackers! [ESP]

Version: 0.13
Excelent plugin! It worked like a charm. I was wondering if you could do the same for signs with commands too. I have a creative server and users started to create custom signs and for some reason the commands executed in them have op permission. It would be great to have this disabled and I didn't find anything about this on the internet

Version: 0.11
Great Plugin for all who wants to keep their servers clean and secure.

Thanks!

Please keep up this nice peace of code!

Version: 0.11
Sounds good! Im gonna check this out <3 !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

Version: 0.9
Great extra layer of protection for those of us who run the latest spigot, and have creative worlds or allow GM1 in survival etc :)

Version: 0.7
You don't need this for 1.9 and above... Why update? Lol. It's only for 1.8.3 and below

Version: 0.7
nice mate thanks btw .

Version: 0.6
Can you pls update for Minecraft 1.9? :) I like the plugin. LG Robert_LP
-
Author's response
As stated at the top of the page, the exploit has been fixed in spigot. There is no need for this plugin on 1.9 any more.

Version: 0.6
Thank you very much!

Version: 0.6
Thank you very much for making this. It works and it does exactly what it's meant to do. 5/5

IP: play.FunMC.us

Version: 0.6
It worked great when I tested it!

Version: 0.6
Works great, would just be nice if it worked on 1.8.6
-
Author's response
It does work on 1.8.6

Version: 0.6
nice plugini

Version: 0.5
Great plugin! Works fine :)

Version: 0.5
Works awesome. Had some suspicious activity with these books past few days, fixed the issue. :)

Version: 0.5
Great Plugin!

Version: 0.4
It's very well written. Looking forward to see more!

Version: 0.4
Thank you! This plugin works perfectly and fixes the really big issue with clickable commands in book. :)

Version: 0.1-SNAPSHOT
Good plugin

Resource Information
Author:
----------
Total Downloads: 10,445
First Release: Apr 11, 2015
Last Update: May 12, 2024
Category: ---------------
All-Time Rating:
30 ratings
Version -----
Released: --------------------
Downloads: ------
Version Rating:
----------------------
-- ratings