Safety vulnerability ID: 62991
The information on this page was manually curated by our Cybersecurity Intelligence Team.
MLflow version 2.8.0 addresses a vulnerability that previously allowed unauthorized users to create accounts, bypassing authentication requirements. This issue was due to an incomplete fix for CVE-2023-1177. Now, only administrators can create new users, mitigating the risk of unauthorized account creation.
https://github.com/mlflow/mlflow/commit/32de2154ef9f946160e5dc01a4d8a449dd0bd259
Latest version: 2.19.0
MLflow is an open source platform for the complete machine learning lifecycle
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application