Security Advisory

CVE-2024-24595

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-05 21:15:19
Last updated 2025-05-15 19:47:08
Assigner HiddenLayer
State PUBLISHED

Description

Allegro AI’s open-source version of ClearML stores passwords in plaintext within the MongoDB instance, resulting in a compromised server leaking all user emails and passwords.