
‼️ CVE-2024-27564: OpenAI ChatGPT Server-Side Request Forgery PoC: https://github.com/chsxthwik/CVE-2024-27564 Vulnerable Parameter : pictureproxy.php?url=payload A vulnerability in pictureproxy.php allows remote attackers to perform arbitrary requests by injecting URLs into the url parameter. This SSRF vulnerability can be exploited without authentication.
Post summary
The post announces CVE‑2024‑27564, details an SSRF flaw in OpenAI ChatGPT's pictureproxy.php, and provides a link to a proof‑of‑concept repository.

