Vulnerabilities > Yandex > Clickhouse > 18.10.3

DATE CVE VULNERABILITY TITLE RISK
2019-08-15 CVE-2018-14672 Path Traversal vulnerability in Yandex Clickhouse
In ClickHouse before 18.12.13, functions for loading CatBoost models allowed path traversal and reading arbitrary files through error messages.
network
low complexity
yandex CWE-22
5.3