Headline
GHSA-wjq3-7jxx-whj9: mlflow Path Traversal vulnerability
mlflow prior to 2.3.0 is vulnerable to path traversal due to a bypass of the fix for CVE-2023-1177.
mlflow Path Traversal vulnerability
Critical severity GitHub Reviewed Published May 17, 2023 to the GitHub Advisory Database • Updated May 18, 2023
Related news
CVE-2023-2780
Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.3.1.