Description
TorchServe is a flexible and easy-to-use tool for serving and scaling PyTorch models in production. TorchServe Management API is designed to be accessed inside trusted environments. It's not recommended to have TorchServe Management API publicly accessible.
Remediation
It's recommended to restrict access to this service on production systems
References
Related Vulnerabilities
WordPress Plugin Simple Download Monitor Multiple Vulnerabilities (3.2.8)
TYPO3 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2005-4875)
WebLogic admin console weak credentials
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2044)