Chaos in the AI zoo - Exploiting CVE-2024-29090 - Authenticated SSRF in AI Engine plugin (by Jordy Meow)

Chaos in the AI zoo - Exploiting CVE-2024-29090 - Authenticated SSRF in AI Engine plugin (by Jordy Meow)

Apps

AE
AI EngineMeowapps

Screenshots from the blog posts

images/cluy4cnb80cc91imx35xe2vah.jpgimages/cluy4cnb80cc91imx35xe2vah.jpg

Summary

AI Engine by Jordy Meow versions up to 2.1.4 is vulnerable to an authenticated Server-Side Request Forgery (SSRF) vulnerability. This post reveals the novel exploit for this unforeseen vulnerability!

general

Description

@secatgourity

190 posts

Total vcoins

0

Social media links

Comments (0)