Martin Votruba
02/02/2024, 11:43 AMWill Raphaelson
02/02/2024, 8:49 PMMartin Votruba
02/02/2024, 8:58 PMWill Raphaelson
02/02/2024, 8:59 PMJohn Kang
03/22/2024, 4:14 PM= 2.0.0, < 2.16.5Patched versions 2.16.5 Description An attacker is able to steal secrets and potentially gain remote code execution via CSRF using a self-hosted, open source Prefect API. References
Will Raphaelson
03/22/2024, 4:18 PMJohn Kang
03/22/2024, 4:19 PMChris Pickett
03/22/2024, 4:19 PMJohn Kang
03/22/2024, 4:35 PM