
A flaw in the Google Cloud Vertex AI SDK for Python let attackers hijack machine learning model uploads by creating a predictable Cloud Storage bucket before the victim. Google patched the bug in version 1.148.0. Palo Alto Networks Unit 42 reported the vulnerability and saw no exploitation in the wild.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
Langflow path traversal flaw exploited in attacks