Aimstack

Aim

23 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.74%
  • Veröffentlicht 10.04.2024 17:15:54
  • Zuletzt bearbeitet 29.07.2025 20:27:43

aimhubio/aim is vulnerable to Cross-Site Request Forgery (CSRF), allowing attackers to perform actions such as deleting runs, updating data, and stealing data like log records and notes without the user's consent. The vulnerability stems from the lac...

Exploit
  • EPSS 8.38%
  • Veröffentlicht 10.04.2024 17:15:54
  • Zuletzt bearbeitet 29.07.2025 20:31:13

A critical Remote Code Execution (RCE) vulnerability was identified in the aimhubio/aim project, specifically within the `/api/runs/search/run/` endpoint, affecting versions >= 3.0.0. The vulnerability resides in the `run_search_api` function of the ...

Exploit
  • EPSS 0.45%
  • Veröffentlicht 23.11.2021 21:15:20
  • Zuletzt bearbeitet 21.11.2024 06:29:45

Aim is an open-source, self-hosted machine learning experiment tracking tool. Versions of Aim prior to 3.1.0 are vulnerable to a path traversal attack. By manipulating variables that reference files with “dot-dot-slash (../)” sequences and its variat...