CVE-2024-27564
Dashboard / Vulnerabilities / CVE-2024-27564
CVE-2024-27564
Summary:
Details: pictureproxy.php in the dirk1983 mm1.ltd source code f9f4bbc allows SSRF via the url parameter. NOTE: the references section has an archived copy of pictureproxy.php from its original GitHub location, but the repository name might later change because it is misleading.
References: https://web.archive.org/save/https://github.com/dirk1983/chatgpt/blob/f9f4bbc99eed7210b291ec116bd57b3d8276bee5/README.md, https://web.archive.org/save/https://github.com/dirk1983/chatgpt/issues/114, https://web.archive.org/web/20250320031248/https://mm1.ltd/, https://web.archive.org/web/20250320032559/https://github.com/dirk1983/chatgpt/blob/f9f4bbc99eed7210b291ec116bd57b3d8276bee5/pictureproxy.php, https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/27xxx/CVE-2024-27564.json, https://nvd.nist.gov/vuln/detail/CVE-2024-27564, https://github.com/dirk1983/chatgpt/issues/114
Affected packages
Package
Name:
Purl:
Affected ranges
Type: GIT
Events:
