VDB
KO
HIGH 7.5

GHSA-qg8p-32gr-gh6x

MLflow Local File Disclosure Vulnerability

Details

This vulnerability enables malicious users to read sensitive files on the server.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / mlflow
Introduced in: 0 Fixed in: 2.9.2
Fix pip install --upgrade 'mlflow>=2.9.2'

References