CVE-2023-30172

Publication date

2023-05-11 00:00:00

Family

mitre

State

PUBLISHED

Description

A directory traversal vulnerability in the /get-artifact API method of the mlflow platform up to v2.0.1 allows attackers to read arbitrary files on the server via the path parameter.