CVE-2024-45852 - MindsDB Arbitrary Code Execution Vulnerability

2 months ago 30
ARTICLE AD BOX
CVE ID : CVE-2024-45852
Published : Sept. 12, 2024, 1:15 p.m. | 24 minutes ago
Description : Deserialization of untrusted data can occur in versions 23.3.2.0 and newer of the MindsDB platform, enabling a maliciously uploaded model to run arbitrary code on the server when interacted with.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article