CVE-2024-28425

Publication date

2024-03-14 00:00:00

Family

mitre

State

PUBLISHED

Description

greykite v1.0.0 was discovered to contain an arbitrary file upload vulnerability in the load_obj function at /templates/pickle_utils.py. This vulnerability allows attackers to execute arbitrary code via uploading a crafted file.