CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.0. It may be remotely exploitable.
CVE
CVE-2024-24591
Severity
HIGH
CVSS
8
EPSS
0.80%
Original NVD Description
A path traversal vulnerability in versions 1.4.0 to 1.14.1 of the client SDK of Allegro AI’s ClearML platform enables a maliciously uploaded dataset to write local or remote files to an arbitrary location on an end user’s system when interacted with.
Related CVEs
Other vulnerabilities affecting the same vendor(s)