Security Advisory

CVE-2023-30172

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-05-11 00:00:00
Last updated 2025-01-27 16:51:28
Assigner mitre
State PUBLISHED

Description

A directory traversal vulnerability in the /get-artifact API method of the mlflow platform up to v2.0.1 allows attackers to read arbitrary files on the server via the path parameter.