VulnSea

lfprojects has 8 CVEs on record. Disclosures have slowed: 0 in the last 90 days after 6 in the 90 before. The busiest recent month was March 2026 with 3. The median CVSS is 7.5 (high), with 2 rated critical. None have a confirmed exploitation report. Most affected products: mlflow (5), mcp_typescript_sdk (2), mcp_java_sdk (1).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.5
Publish → KEV
Last 90 days
0 prev 6

Products

  • mlflow 5
  • mcp_typescript_sdk 2
  • mcp_java_sdk 1
8
Total CVEs
2
Critical
0
CISA KEV
0
Exploited

lfprojects vulnerabilities

CVEs affecting lfprojects, newest first. Open any entry for full detail, references, and exploit status.

8 CVEsRSS

CVE-2026-2614High· 7.5PoC
4mo ago

A vulnerability in the `_create_model_version()` handler of `mlflow/server/handlers.py` in mlflow/mlflow versions 3.9.0 and earlier allows an unauthenticated remote attacker to read arbitrary files from the server's filesystem

A vulnerability in the `_create_model_version()` handler of `mlflow/server/handlers.py` in mlflow/mlflow versions 3.9.0 and earlier allows an unauthenticated remote attacker to read arbitrary files from the server's filesystem. The issue…

Midnightlfprojects · mlflowEPSS 3.6%via NVD
CVE-2026-33865Medium· 5.4PoC
5mo ago

MLflow is vulnerable to Stored Cross-Site Scripting (XSS) caused by unsafe parsing of YAML-based MLmodel artifacts in its web interface

MLflow is vulnerable to Stored Cross-Site Scripting (XSS) caused by unsafe parsing of YAML-based MLmodel artifacts in its web interface. An authenticated attacker can upload a malicious MLmodel file containing a payload that executes whe…

Twilightlfprojects · mlflowEPSS 0.22%via NVD
CVE-2026-0545Critical· 9.8PoC
5mo ago

In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled

In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled. This vulnerability affects the latest version of the repository. If job e…

Abyssallfprojects · mlflowEPSS 4.4%via NVD
CVE-2026-34237Medium· 6.1
5mo ago

MCP Java SDK is the official Java SDK for Model Context Protocol servers and clients

MCP Java SDK is the official Java SDK for Model Context Protocol servers and clients. Prior to versions 0.83.0, 1.0.1, and 1.1.1, there is a hardcoded wildcard CORS vulnerability. This issue has been patched in versions 0.83.0, 1.0.1, an…

Sunlitlfprojects · mcp_java_sdkEPSS 0.22%via NVD
CVE-2026-0596High· 7.8PoC
5mo ago

A command injection vulnerability exists in mlflow/mlflow when serving a model with `enable_mlserver=True`

A command injection vulnerability exists in mlflow/mlflow when serving a model with `enable_mlserver=True`. The `model_uri` is embedded directly into a shell command executed via `bash -c` without proper sanitization. If the `model_uri` …

Midnightlfprojects · mlflowEPSS 1.3%via NVD
CVE-2025-15379Critical· 10.0
5mo ago

A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to_env()` function

A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to_env()` function. When deploying a model with `env_manager=LOCAL`, MLflow reads dependen…

Midnightlfprojects · mlflowEPSS 2.4%via NVD
CVE-2026-25536High· 7.1
7mo ago

MCP TypeScript SDK is the official TypeScript SDK for Model Context Protocol servers and clients

MCP TypeScript SDK is the official TypeScript SDK for Model Context Protocol servers and clients. From version 1.10.0 to 1.25.3, cross-client response data leak when a single McpServer/Server and transport instance is reused across multi…

Twilightlfprojects · mcp_typescript_sdkEPSS 0.28%via NVD
CVE-2026-0621High· 7.5
8mo ago

Anthropic's MCP TypeScript SDK versions up to and including 1.25.1 contain a regular expression denial of service (ReDoS) vulnerability in the UriTemplate class when processing RFC 6570 exploded array patterns

Anthropic's MCP TypeScript SDK versions up to and including 1.25.1 contain a regular expression denial of service (ReDoS) vulnerability in the UriTemplate class when processing RFC 6570 exploded array patterns. The dynamically generated …

Twilightlfprojects · mcp_typescript_sdkEPSS 0.45%via NVD
lfprojects vulnerabilities (CVEs) · VulnSea