Security Advisory

CVE-2023-31847

6.5
MEDIUM

Vulnerability Description

In davinci 0.3.0-rc after logging in, the user can connect to the mysql malicious server by controlling the data source to read arbitrary files on the client side.
Published Date May 17, 2023
Official Source NIST NVD Advisory