Description
MLflow is an open source platform for managing the end-to-end machine learning lifecycle
Acunetix determined that it was possible to access MLflow API without authentication.
Remediation
Enable authentication for MLflow
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-3848)
Redis Unauthorized Access Vulnerability
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-31549)
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-6455)
WordPress Plugin Media Library Assistant Information Disclosure (3.00)