An attacker can overwrite any file on the server hosting MLflow without any authentication.
| Software | From | Fixed in |
|---|---|---|
mlflow
|
- | 2.8.1.x |