A malicious user could use this issue to get command execution on the vulnerable machine and get access to data & models information.
2023-12-20T06:15:45.553
2024-11-21T08:44:57.463
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | lfprojects | mlflow | < 2.9.2 | Yes |