← Back to browse · API

CVE-2023-6977

Severity
CRITICAL
CVSS
10.0
EPSS
0.03924
Risk score
41.37
CISA KEV
No
PoC
No
Published
2023-12-20
Modified
2024-08-02
First seen
2026-08-08
Aliases
EUVD-2023-3270, GHSA-QG8P-32GR-GH6X, PYSEC-2026-1659
Products
mlflow:mlflow/mlflow, mlflow:mlflow/mlflow unspecified <2.9.2
Sources
euvd EUVD-2023-3270

Description

This vulnerability enables malicious users to read sensitive files on the server.

References