Launch Week Day 1: Announcing Security Design Review
HIGH 8.8 PyPI

MLflow Path Traversal Vulnerability

GHSA-wv8q-4f85-2p8p · BIT-mlflow-2023-6976 · CVE-2023-6976

Published · Modified

Description

This vulnerability is capable of writing arbitrary files into arbitrary locations on the remote filesystem in the context of the server process.

Ready to move

Start Securing

Free, no credit card | First findings in minutes