logo

MLflow shipped admin:password1234 as default creds – and that's just one finding

Posted by sreejithg |2 hours ago |1 comments

philipwhiuk 2 hours ago

AI written blog post for AI written responses and AI generated PRs to potentially AI generated vulns? We live in terrible times

> Then one escalation email to Databricks security changed everything

What did it change?

> Notably, the commit is co-authored by @sreelim.

Why is this notable? You're the reporter

The fix to the 'vuln' seems to be another warning.

Newsflash, PostgreSQL has a weak password out the box hence POSTGRES_PASSWORD is mandatory in the Docker image.