CVE-2025-54381 | BentoML up to 1.4.18 server-side request forgery (GHSA-mrmq-3q62-6cc8)
A vulnerability has been found in BentoML up to 1.4.18 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to server-side request forgery.
This vulnerability is known as CVE-2025-54381. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.