You could make a REST API that does JS code and it would run on the security risk line, how should I sanitize the input or validate it?
const { SlashCommandBuilder } = require('@discordjs/builders');
const { Client, Intents, DiscordAPIError } = require('discord.js');
const DiscordJS = require('discord.js')
const axios = require('axios').default;
module.exports = {
data: new SlashCommandBuilder()
.setName('httpget')
.setDescription('HTTP get command!')
.addStringOption(option =>
option.setName('url')
.setDescription('URL of the website')
.setRequired(true)),
async execute(interaction) {
let text = interaction.options.getString('url') //option the user called the bot with
axios.get(text).then(resp => { //requet using said URL
const contenttotext = `${JSON.stringify(console.log("PWN"))}` //SECURITY RISK
interaction.reply({
content: contenttotext //sends it back
})
}) .catch(function (error) {
// handle error
});
}
};