CVE-2024-29090

Server-Side Request Forgery (SSRF) vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot: from n/a through 2.1.4.
Configurations

Configuration 1 (hide)

cpe:2.3:a:meowapps:ai_engine:*:*:*:*:*:wordpress:*:*

History

08 Apr 2025, 16:38

Type Values Removed Values Added
First Time Meowapps
Meowapps ai Engine
CPE cpe:2.3:a:meowapps:ai_engine:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/vulnerability/ai-engine/wordpress-ai-engine-plugin-2-1-4-server-side-request-forgery-ssrf-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/ai-engine/wordpress-ai-engine-plugin-2-1-4-server-side-request-forgery-ssrf-vulnerability?_s_id=cve - Third Party Advisory
References () https://www.vicarius.io/vsociety/posts/chaos-in-the-ai-zoo-exploiting-cve-2024-29090-authenticated-ssrf-in-ai-engine-plugin-by-jordy-meow - () https://www.vicarius.io/vsociety/posts/chaos-in-the-ai-zoo-exploiting-cve-2024-29090-authenticated-ssrf-in-ai-engine-plugin-by-jordy-meow - Exploit, Third Party Advisory
References () https://www.vicarius.io/vsociety/posts/decoding-the-unseen-threat-exploiting-cve-2024-29090-authenticated-ssrf-in-ai-engine-by-jordy-meow-wordpress-plugin - () https://www.vicarius.io/vsociety/posts/decoding-the-unseen-threat-exploiting-cve-2024-29090-authenticated-ssrf-in-ai-engine-by-jordy-meow-wordpress-plugin - Exploit, Third Party Advisory

13 Feb 2025, 18:17

Type Values Removed Values Added
Summary (en) Server-Side Request Forgery (SSRF) vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot: from n/a through 2.1.4. (en) Server-Side Request Forgery (SSRF) vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot: from n/a through 2.1.4.

Information

Published : 2024-03-28 06:15

Updated : 2025-04-08 16:38


NVD link : CVE-2024-29090

Mitre link : CVE-2024-29090

CVE.ORG link : CVE-2024-29090


JSON object : View

Products Affected

meowapps

  • ai_engine
CWE
CWE-918

Server-Side Request Forgery (SSRF)