Vulnerabilities
Vulnerable Software
Lfprojects:  >> Mlflow  >> 2.8.0  Security Vulnerabilities
An issue in MLFlow versions 2.8.1 and before allows a remote attacker to obtain sensitive information via a crafted request to REST API.
CVSS Score
7.5
EPSS Score
0.366
Published
2023-12-05
An attacker is able to arbitrarily create an account in MLflow bypassing any authentication requirment.
CVSS Score
9.1
EPSS Score
0.012
Published
2023-11-16
MLflow allowed arbitrary files to be PUT onto the server.
CVSS Score
10.0
EPSS Score
0.044
Published
2023-11-16


Contact Us

Shodan ® - All rights reserved