CVE-2023-1177

Path Traversal: '\..\filename' in pypi/mlflow

Identifiers

GHSA-xg73-94fp-g449, CVE-2023-1177

Package Slug

pypi/mlflow

Vulnerability

Path Traversal: '..\filename'

Description

Path Traversal: '..\filename' in GitHub repository mlflow/mlflow prior to 2.2.1.

Affected Versions

All versions before 2.2.2

Solution

Upgrade to version 2.2.2 or above.

Last Modified

2023-03-27

source