Security Vulnerabilities in Leading ML Toolkits Allow for Server Takeovers and Privilege Escalation
Recent cybersecurity research has revealed a significant number of security vulnerabilities affecting nearly two dozen open-source machine learning (ML) projects. The findings, reported by software supply chain security firm JFrog, highlight weaknesses present on both the server and client sides of these technologies. The identified server-side vulnerabilities pose a serious…