CVE Vulnerabilities

CVE-2023-49796

Published: Dec 11, 2023 | Modified: Dec 14, 2023
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

MindsDB connects artificial intelligence models to real time data. Versions prior to 23.11.4.1 contain a limited file write vulnerability in file.py Users should use MindsDBs staging branch or v23.11.4.1, which contain a fix for the issue.

Affected Software

Name Vendor Start Version End Version
Mindsdb Mindsdb 23.7.4.1 (including) 23.7.4.1 (including)

References