Researchers Identify Over 20 Supply Chain Vulnerabilities in MLOps Platforms
Briefly

JupyterLab's handling of HTML output poses a significant risk; the emitted JavaScript is not sandboxed, potentially compromising the parent web application.
Inherent vulnerabilities stem from the formats and processes used by machine learning technologies, allowing attackers to exploit these for malicious code execution.
Read at The Hacker News
[
|
]