Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-wjq3-7jxx-whj9: mlflow Path Traversal vulnerability

mlflow prior to 2.3.0 is vulnerable to path traversal due to a bypass of the fix for CVE-2023-1177.

ghsa
#vulnerability#git

mlflow Path Traversal vulnerability

Critical severity GitHub Reviewed Published May 17, 2023 to the GitHub Advisory Database • Updated May 18, 2023

Related news

CVE-2023-2780

Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.3.1.