An issue exists in function sync_tree in hetero_decision_tree_guest.py in WeBank FATE (Federated AI Technology Enabler) 0.1 up to and including 1.4.2 allows malicious users to read sensitive information during the training process of machine learning joint modeling.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
webank federated ai technology enabler |