SSRF-Exploit-CVE-2024-27564

SSRF in pictureproxy.php via unvalidated url parameter passed to file_get_contents.

Published 5 Sep 2026Updated 5 Sep 20263 sources
CVSS 6.5 PoC CANDIDATE

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.