CVE-2024-24595

6.0MEDIUM

Allegro AI’s open-source version of ClearML stores passwords in plaintext within the MongoDB instance, resulting in a compromised server leaking all user emails and passwords.

Published: 2/5/2024Updated: 11/21/2024

Description

Allegro AI’s open-source version of ClearML stores passwords in plaintext within the MongoDB instance, resulting in a compromised server leaking all user emails and passwords.

AI AnalysisPowered by AI

Affected Products

clearclearml
-

References