CVE-2024-45190 Information

Description

Mage AI allows remote users with the \Viewer\ role to leak arbitrary files from the Mage server due to a path traversal in the \Pipeline Interaction\ request

Reference

https://research.jfrog.com/vulnerabilities/mage-ai-pipeline-interaction-request-remote-arbitrary-file-leak-jfsa-2024-001039605/

Share on: