CVE-2024-27564

Severity CVSS v4.0:
Pending analysis
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
05/03/2024
Last modified:
20/03/2025

Description

pictureproxy.php in the dirk1983 mm1.ltd source code f9f4bbc allows SSRF via the url parameter. NOTE: the references section has an archived copy of pictureproxy.php from its original GitHub location, but the repository name might later change because it is misleading.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dirk1983:chatgpt:2023-05-23:*:*:*:*:*:*:*