VulnSea

mlflow has 49 CVEs on record between 2023 and 2026. Disclosures have slowed: 6 in the last 90 days after 11 in the 90 before. The busiest recent month was May 2026 with 5. The median CVSS is 8.1 (high), with 3 rated critical. None have a confirmed exploitation report.

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
8.1
Publish → KEV
Last 90 days
6 prev 11

Products

  • mlflow 49
49
Total CVEs
3
Critical
0
CISA KEV
0
Exploited

mlflow vulnerabilities

CVEs affecting mlflow, newest first. Open any entry for full detail, references, and exploit status.

49 CVEsRSS

CVE-2026-79721High· 8.6
2w ago

Code execution can occur in versions of the MLflow platform running version 0.0.1 or newer, enabling a maliciously crafted model artifact to execute arbitrary code on an end user's system when loaded by the project.

Code execution can occur in versions of the MLflow platform running version 0.0.1 or newer, enabling a maliciously crafted model artifact to execute arbitrary code on an end user's system when loaded by the project.

Twilightmlflow · mlflowEPSS 0.29%via NVD
GHSA-gqvg-gmmx-x4hmHigh· 8.8
3w ago

MLFLOW_ALLOW_PICKLE_DESERIALIZATION=False safety control bypassed by mlflow.statsmodels flavor — RCE via crafted model artifact

MLFLOW_ALLOW_PICKLE_DESERIALIZATION=False safety control bypassed by mlflow.statsmodels flavor — RCE via crafted model artifact

Twilightmlflow · mlflowvia GHSA
CVE-2026-69146Medium· 6.5
1mo ago

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. From 3.13.0 until 3.15.0, LogInputs is absent from BEFORE_REQUEST_HANDLERS in the mlflow/server/auth package, allowing any a…

Sunlitmlflow · mlflowEPSS 0.28%via NVD
CVE-2026-69148High· 7.1
1mo ago

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. Prior to 3.15.0, CreateModelVersion accepts a run_id or model_id after _validate_source_run() or _validate_source_model() in…

Twilightmlflow · mlflowEPSS 0.28%via NVD
CVE-2026-71211High· 7.1PoC
1mo ago

MLflow's AI Gateway accepts an auth_config.api_base value when creating a gateway secret (mlflow/server/handlers.py, _create_gateway_secret) with no validation of scheme, host, or IP range; the value is stored verbatim

MLflow's AI Gateway accepts an auth_config.api_base value when creating a gateway secret (mlflow/server/handlers.py, _create_gateway_secret) with no validation of scheme, host, or IP range; the value is stored verbatim. The gateway proxy…

Midnightmlflow · mlflowEPSS 0.25%via NVD
CVE-2026-8147High· 8.1
2mo ago

MLflow: trace API endpoints lack proper authorization validators

MLflow: trace API endpoints lack proper authorization validators

Twilightmlflow · mlflowEPSS 0.55%via OSV
CVE-2026-10803Low· 3.6
3mo ago

MLflow: Deterministic sampling in dataset digest enables predictable collisions

MLflow: Deterministic sampling in dataset digest enables predictable collisions

Sunlitmlflow · mlflowEPSS 0.10%via OSV
CVE-2026-4035Critical· 9.1
3mo ago

MLflow: Environment variable injection in AI Gateway secrets enables server-side credential exfiltration

MLflow: Environment variable injection in AI Gateway secrets enables server-side credential exfiltration

Midnightmlflow · mlflowEPSS 0.52%via OSV
CVE-2026-3198Medium· 6.5
3mo ago

MLflow: Any authenticated user can enumerate all gateway secrets, endpoints, and model definitions

MLflow: Any authenticated user can enumerate all gateway secrets, endpoints, and model definitions

Sunlitmlflow · mlflowEPSS 0.24%via OSV
CVE-2026-2651Critical· 9.0
3mo ago

MLflow allows unauthorized access to multipart upload endpoints when the `--serve-artifacts` mode is enabled

MLflow allows unauthorized access to multipart upload endpoints when the `--serve-artifacts` mode is enabled

Midnightmlflow · mlflowEPSS 0.34%via OSV
CVE-2026-2734Medium· 6.5
4mo ago

MLflow authenticated users can enumerate any registered model versions due to lack of per-model permissions checks

MLflow authenticated users can enumerate any registered model versions due to lack of per-model permissions checks

Sunlitmlflow · mlflowEPSS 0.44%via OSV
CVE-2026-4137High· 7.0
4mo ago

MLFlow Creates a Temporary File With Insecure Permissions

MLFlow Creates a Temporary File With Insecure Permissions

Twilightmlflow · mlflowEPSS 0.19%via OSV
CVE-2026-2652High· 8.6PoC
4mo ago

MLflow: unauthenticated access to certain FastAPI routes

MLflow: unauthenticated access to certain FastAPI routes

Midnightmlflow · mlflowEPSS 21%via OSV
CVE-2026-2393High· 7.1
4mo ago

MLflow Has a Server-Side Request Forgery (SSRF) Vulnerability

MLflow Has a Server-Side Request Forgery (SSRF) Vulnerability

Twilightmlflow · mlflowEPSS 0.29%via OSV
CVE-2026-33866Medium· 4.3
5mo ago

MLflow is vulnerable to an authorization bypass affecting the AJAX endpoint

MLflow is vulnerable to an authorization bypass affecting the AJAX endpoint

Sunlitmlflow · mlflowEPSS 0.36%via OSV
CVE-2025-15036Critical· 9.6
5mo ago

MLFlow path traversal vulnerability

MLFlow path traversal vulnerability

Midnightmlflow · mlflowEPSS 0.58%via OSV
CVE-2025-15381High· 8.1
5mo ago

MLFlow allows Tracing + Assessments Access

MLFlow allows Tracing + Assessments Access

Twilightmlflow · mlflowEPSS 0.33%via OSV
CVE-2025-15031High· 8.1
6mo ago

Arbitrary file write via tar traversal in mlflow

Arbitrary file write via tar traversal in mlflow

Twilightmlflow · mlflowEPSS 0.85%via OSV
CVE-2025-14287High· 7.5
6mo ago

MLflow has a command injection in mlflow/sagemaker/__init__.py

MLflow has a command injection in mlflow/sagemaker/__init__.py

Twilightmlflow · mlflowEPSS 1.5%via OSV
CVE-2026-2033High· 8.10day
7mo ago

MLflow Tracking Server Artifact Handler Directory Traversal Remote Code Execution Vulnerability

MLflow Tracking Server Artifact Handler Directory Traversal Remote Code Execution Vulnerability

Abyssalmlflow · mlflowEPSS 1.7%via OSV
CVE-2026-2635High· 7.30day⚖ disputed
7mo ago

MLflow Use of Default Password Authentication Bypass Vulnerability

MLflow Use of Default Password Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of MLflow. Authentication is not required to exploit this vulnerability. T…

AbyssalMLflow · MLflowEPSS 0.98%via NVD
CVE-2025-10279High· 7.0
7mo ago

mlflow Creates of Temporary File in Directory with Insecure Permissions

mlflow Creates of Temporary File in Directory with Insecure Permissions

Twilightmlflow · mlflowEPSS 0.23%via OSV
CVE-2025-14279High· 8.1
8mo ago

MLFlow is vulnerable to DNS rebinding attacks due to a lack of Origin header validation

MLFlow is vulnerable to DNS rebinding attacks due to a lack of Origin header validation

Twilightmlflow · mlflowEPSS 0.21%via OSV
CVE-2025-11200High· 8.10day
10mo ago

MLflow Weak Password Requirements Authentication Bypass Vulnerability

MLflow Weak Password Requirements Authentication Bypass Vulnerability

Abyssalmlflow · mlflowEPSS 1.5%via OSV
CVE-2025-11201High· 8.10day
10mo ago

MLflow Tracking Server Model Creation Directory Traversal Remote Code Execution Vulnerability

MLflow Tracking Server Model Creation Directory Traversal Remote Code Execution Vulnerability

Abyssalmlflow · mlflowEPSS 27%via OSV
CVE-2024-6838Medium· 5.3
1y ago

MLflow Uncontrolled Resource Consumption vulnerability

MLflow Uncontrolled Resource Consumption vulnerability

Sunlitmlflow · mlflowEPSS 0.65%via OSV
CVE-2025-1473Medium· 5.4
1y ago

MLflow Cross-Site Request Forgery (CSRF) vulnerability

MLflow Cross-Site Request Forgery (CSRF) vulnerability

Sunlitmlflow · mlflowEPSS 0.22%via OSV
CVE-2024-8859High· 7.5PoC
1y ago

MLflow has a Local File Read/Path Traversal in dbfs

MLflow has a Local File Read/Path Traversal in dbfs

Midnightmlflow · mlflowEPSS 2.7%via OSV
CVE-2025-0453Medium· 5.9
1y ago

MLflow Uncontrolled Resource Consumption vulnerability

MLflow Uncontrolled Resource Consumption vulnerability

Sunlitmlflow · mlflowEPSS 11%via OSV
CVE-2024-3099Medium· 5.4
2y ago

Undefined Behavior in mlflow

Undefined Behavior in mlflow

Sunlitmlflow · mlflowEPSS 0.44%via OSV
mlflow vulnerabilities (CVEs) · VulnSea