CVE-2024-24595
6.0MEDIUMAllegro AI’s open-source version of ClearML stores passwords in plaintext within the MongoDB instance, resulting in a compromised server leaking all user emails and passwords.
Published: 2/5/2024Updated: 11/21/2024
Description
Allegro AI’s open-source version of ClearML stores passwords in plaintext within the MongoDB instance, resulting in a compromised server leaking all user emails and passwords.
AI AnalysisPowered by AI
Affected Products
clearclearml
-