Skip to content

CVE-2023-3765 | mlflow/mlflow

Absolute Path Traversal in GitHub repository mlflow/mlflow prior to 2.5.0..This CVE has a CVSS3.1 score of 3.7 and a Base Severity of LOW.

InfoDetails
CVE IDCVE-2023-3765
CVE StatePUBLISHED
BaseScoreNA
BaseSeverityNA
VectorStringNA
VersionNA

References for CVE-2023-3765 :
https://huntr.dev/bounties/4be5fd63-8a0a-490d-9ee1-f33dc768ed76
https://github.com/mlflow/mlflow/commit/6dde93758d42455cb90ef324407919ed67668b9b

Metric TypeMetric Score
AttackVector(AV)NA
AttackComplexity(AC)NA
PrivilegesRequired(PR)NA
UserInteraction(UI)NA
Scope(S)NA
Confidentiality(C)NA
Availability(A)NA
Integrity(I)NA