CVE-2024-39713

HIGH EXPLOITED NUCLEI

Rocket.Chat < 6.10.1 - Server-Side Request Forgery via Twilio Webhook Endpoint

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2024-39713 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 2 public exploits from researchers including typical-pashochek, blackcodersec. A Nuclei detection template is also available.

AI-analyzed exploit summary The repository contains a functional Python script and Nuclei template that exploit an SSRF vulnerability in Rocket.Chat's Twilio webhook endpoint. The exploit sends a crafted POST request with a malicious MediaUrl0 parameter to trigger an SSRF.

Description

A Server-Side Request Forgery (SSRF) affects Rocket.Chat's Twilio webhook endpoint before version 6.10.1.

Exploits (2)

nomisec WORKING POC 5 stars
by typical-pashochek · infoleak
https://github.com/typical-pashochek/CVE-2024-39713

The repository contains a functional Python script and Nuclei template that exploit an SSRF vulnerability in Rocket.Chat's Twilio webhook endpoint. The exploit sends a crafted POST request with a malicious MediaUrl0 parameter to trigger an SSRF.

Classification
Working Poc 95%
Attack Type
Ssrf
Complexity
Trivial
Reliability
Reliable
Target: Rocket.Chat < 6.10.1
No auth needed
Prerequisites: Network access to the Rocket.Chat server · Valid target URL for SSRF
devstral-2 · analyzed Feb 18, 2026 Full analysis →
nomisec WORKING POC 1 stars
by blackcodersec · poc
https://github.com/blackcodersec/exploit-cve

The repository contains a functional Python script that exploits CVE-2024-39713, an SSRF vulnerability in Rocket.Chat's Twilio webhook endpoint. The PoC sends a crafted JSON payload to the vulnerable endpoint, allowing an attacker to trigger SSRF by specifying an arbitrary target URL.

Classification
Working Poc 95%
Attack Type
Ssrf
Complexity
Trivial
Reliability
Reliable
Target: Rocket.Chat before version 6.10.1
No auth needed
Prerequisites: Network access to the Rocket.Chat server · Twilio webhook endpoint enabled
devstral-2 · analyzed Feb 19, 2026 Full analysis →

Nuclei Templates (1)

Rocket.Chat - Server-Side Request Forgery (SSRF)
HIGHby iamnoooob,rootxharsh,pdresearch
Shodan: http.title:"rocket.chat"
FOFA: title="rocket.chat"

References (1)

Core 1
Core References
Issue Tracking, Third Party Advisory
https://hackerone.com/reports/1886954

Scores

CVSS v3 8.6
EPSS 0.9006
EPSS Percentile 99.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

VulnCheck KEV 2024-11-07
CWE
CWE-918
Status published
Products (2)
npm/rocket.chat 0 - 6.10.1npm
rocket.chat/rocket.chat < 6.10.1
Published Aug 05, 2024
Tracked Since Feb 18, 2026