Количество 2
Количество 2
CVE-2025-51481
Local File Inclusion in dagster._grpc.impl.get_notebook_data in Dagster 1.10.14 allows attackers with access to the gRPC server to read arbitrary files by supplying path traversal sequences in the notebook_path field of ExternalNotebookData requests, bypassing the intended extension-based check.
GHSA-h7x8-jv97-fvvm
Dagster Local File Inclusion vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-51481 Local File Inclusion in dagster._grpc.impl.get_notebook_data in Dagster 1.10.14 allows attackers with access to the gRPC server to read arbitrary files by supplying path traversal sequences in the notebook_path field of ExternalNotebookData requests, bypassing the intended extension-based check. | CVSS3: 6.6 | 0% Низкий | 7 месяцев назад | |
GHSA-h7x8-jv97-fvvm Dagster Local File Inclusion vulnerability | CVSS3: 6.6 | 0% Низкий | 7 месяцев назад |
Уязвимостей на страницу