An attacker can overwrite any file on the server hosting MLflow without any authentication.
No PoCs from references.
- https://github.com/google/tsunami-security-scanner-plugins
- https://github.com/jmdunne28/offsec