QID 997529
Date Published: 2024-02-27
QID 997529: Python (Pip) Security Update for mlflow (GHSA-6749-m5cp-6cg7)
Insufficient sanitization in MLflow leads to XSS when running an untrusted recipe.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-6749-m5cp-6cg7 for updates and patch information.
Vendor References
- GHSA-6749-m5cp-6cg7 -
github.com/advisories/GHSA-6749-m5cp-6cg7
CVEs related to QID 997529
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-6749-m5cp-6cg7 | mlflow |
|