Ben Wilson
5 exploits
Active since Apr 2023
mlflow/mlflow <2.3.1 - Path Traversal
CVSS 7.5
MLflow < 2.9.2 - Path Traversal
CVSS 8.8
MLflow < 2.9.2 - Remote Code Execution via Malicious Config Download
CVSS 8.8
mlflow < 3.4.0 - Arbitrary Code Execution via Insecure Temporary Directory Permissions
CVSS 7.0
MLFlow <= 3.4.0 - DNS Rebinding Attack via Missing Origin Header Validation
CVSS 8.1