MLflow get-artifact /ajax-api/2.0/mlflow/experiments/create 目录遍历漏洞 (CVE-2024-1483)

2025-05-30 MLflow PoC No

Description

MLflow 是一个机器学习的开源平台。MLflow 开源平台 get-artifact 存在目录遍历漏洞,攻击者可读取系统所有敏感文件。

PoC

None yet. Search at https://trap.biu.life/?ref=rss

References

Related Vulnerabilities