diff --git a/mlflow.advisories.yaml b/mlflow.advisories.yaml index f59ec9197..4c8329048 100644 --- a/mlflow.advisories.yaml +++ b/mlflow.advisories.yaml @@ -361,3 +361,21 @@ advisories: componentType: python componentLocation: /usr/share/mlflow/lib/python3.12/site-packages/werkzeug-3.0.4.dist-info/METADATA, /usr/share/mlflow/lib/python3.12/site-packages/werkzeug-3.0.4.dist-info/RECORD scanner: grype + + - id: CGA-xqq4-gxgx-3463 + aliases: + - CVE-2024-56201 + - GHSA-gmj6-6f8f-6699 + events: + - timestamp: 2024-12-24T08:30:40Z + type: detection + data: + type: scan/v1 + data: + subpackageName: mlflow + componentID: 814041681c0b86ed + componentName: jinja2 + componentVersion: 3.1.4 + componentType: python + componentLocation: /usr/share/mlflow/lib/python3.13/site-packages/jinja2-3.1.4.dist-info/METADATA, /usr/share/mlflow/lib/python3.13/site-packages/jinja2-3.1.4.dist-info/RECORD + scanner: grype