VDB
Sign up
CRITICAL9.8

PYSEC-2024-268

Details

A Server-Side Request Forgery (SSRF) vulnerability exists in the upload processing interface of gaizhenbiao/ChuanhuChatGPT versions <= ChuanhuChatGPT-20240410-git.zip. This vulnerability allows attackers to send crafted requests from the vulnerable server to internal or external resources, potentially bypassing security controls and accessing sensitive data.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/chuanhuchatgpt
Introduced in: 0

No fixed version published yet for chuanhuchatgpt (pip). Pin to a known-safe version or switch to an alternative.

References