CVE-2024-54330

HIGH NUCLEI

Hep Hep Hurra <2.4 - SSRF

Title source: llm

Description

Server-Side Request Forgery (SSRF) vulnerability in Hep Hep Hurra (HHH) Hurrakify allows Server Side Request Forgery.This issue affects Hurrakify: from n/a through 2.4.

Exploits (1)

nomisec WORKING POC
by RandomRobbieBF · poc
https://github.com/RandomRobbieBF/CVE-2024-54330

Nuclei Templates (1)

Hurrakify <= 2.4 - Server-Side Request Forgery
HIGHVERIFIEDby s4e-io
Shodan: http.html:"wp-content/plugins/hurrakify"
FOFA: body="wp-content/plugins/hurrakify"

Scores

CVSS v3 7.2
EPSS 0.5912
EPSS Percentile 98.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N

Classification

CWE
CWE-918
Status draft

Timeline

Published Dec 13, 2024
Tracked Since Feb 18, 2026