Vulnerability CVE-2023-6709


Published: 2023-12-12   Modified: 2023-12-14

Description:
Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository mlflow/mlflow prior to 2.9.2.

Type:

CWE-1336

Affected software
Lfprojects -> Mlflow 

 References:
https://huntr.com/bounties/9e4cc07b-6fff-421b-89bd-9445ef61d34d
https://github.com/mlflow/mlflow/commit/432b8ccf27fd3a76df4ba79bb1bec62118a85625

Copyright 2024, cxsecurity.com

 

Back to Top