The vulnerability allows an attacker to inject malicious code into the Content-Type header of a POST request,
which is then reflected back to the user without proper sanitization or escaping.
id: CVE-2023-6568
info:
name: Mlflow - Cross-Site Scripting
author: ritikchaddha
severity: me
...