Path Traversal Vulnerability in PaddlePaddle by PaddlePaddle Developers
CVE-2024-0818
9.1CRITICAL
What is CVE-2024-0818?
An arbitrary file overwrite vulnerability has been found in PaddlePaddle, a popular open-source deep learning platform, which allows an attacker to exploit path traversal issues. This flaw enables the manipulation of file paths and could potentially allow unauthorized users to overwrite files on the server. Such vulnerabilities pose significant risks to the integrity of the system and could lead to exposure of sensitive data. Users of PaddlePaddle versions prior to 2.6 are strongly advised to update their software to mitigate potential security threats. For more details, refer to the vulnerability bounty listing.
Affected Version(s)
paddlepaddle/paddle <= unspecified
