zenml is vulnerable to Cross-Site Request Forgery (CSRF)
50
Medium Risk
Affected versions of this package are vulnerable to cross-site request forgery (CSRF) in the generate_access_token() function in auth.py. An attacker can exploit this vulnerability to generate access tokens on behalf of a victim, potentially leading to unauthorized access to protected resources.
You are affected if you are using a version that falls within the vulnerable range.
zenml is vulnerable to Cross-Site Request Forgery (CSRF) in versions 0.1.0 - 0.72.0.
Upgrade the zenml library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant