Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
3.3
CVSSv3
CVE-2023-1176
Published: 24/03/2023 Updated: 28/03/2023
CVSS v3 Base Score: 3.3 | Impact Score: 1.4 | Exploitability Score: 1.8
VMScore: 0
Subscribe to Mlflow
Vulnerability Summary
Absolute Path Traversal in GitHub repository mlflow/mlflow before 2.2.2.
Vulnerable Product
Search on Vulmon
Subscribe to Product
lfprojects mlflow
References
CWE-36
https://huntr.dev/bounties/ae92f814-6a08-435c-8445-eec0ef4f1085
https://github.com/mlflow/mlflow/commit/63ef72aa4334a6473ce7f889573c92fcae0b3c0d
https://nvd.nist.gov
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
deserialization
CVE-2024-4040
cross-site scripting
CVE-2023-25790
CVE-2024-2961
XML external entity
CVE-2024-26926
CVE-2024-32806
CVE-2024-32711
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started