CVE-2024-27565: DIRK1983 Chatgpt-Wechat-Personal

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

A Server-Side Request Forgery (SSRF) in weixin.php of ChatGPT-wechat-personal commit a0857f6 allows attackers to force the application to make arbitrary requests.

Affected products

  • DIRK1983 Chatgpt-Wechat-Personal: version 2023-03-29 only

Published 2024-03-05. Last modified 2026-06-17.