Safety vulnerability ID: 62994
The information on this page was manually curated by our Cybersecurity Intelligence Team.
mlflow 2.9.2 addresses a vulnerability that allows an attacker to inject malicious code into the “Content-Type” header of a POST request, which is then reflected back to the user without proper sanitization or escaping.
https://github.com/mlflow/mlflow/commit/28ff3f94994941e038f2172c6484b65dc4db6ca1
Latest version: 2.19.0
MLflow is an open source platform for the complete machine learning lifecycle
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application