Untrusted Users can Leak Files via Path Traversal in Pipeline Interaction Request
CVE-2024-45190

Currently unrated

Key Information:

Vendor

Mage

Vendor
CVE Published:
23 August 2024

What is CVE-2024-45190?

Mage AI allows remote users with the "Viewer" role to leak arbitrary files from the Mage server due to a path traversal in the "Pipeline Interaction" request

References

Timeline

  • Vulnerability published

.
CVE-2024-45190 : Untrusted Users can Leak Files via Path Traversal in Pipeline Interaction Request