Known Vulnerabilities for Mlflow by Lfprojects
Listed below are 10 of the newest known vulnerabilities associated with "Mlflow" by "Lfprojects".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-33866 json | MLflow is vulnerable to an authorization bypass affecting the AJAX endpoint used to download saved model artifacts. Due to mi... | Not Provided | 2026-04-07 | 2026-04-14 |
| CVE-2026-33865 json | MLflow is vulnerable to Stored Cross-Site Scripting (XSS) caused by unsafe parsing of YAML-based MLmodel artifacts in its web... | Not Provided | 2026-04-07 | 2026-04-14 |
| CVE-2026-4137 json | In mlflow/mlflow versions prior to 3.11.0, the `get_or_create_nfs_tmp_dir()` function in `mlflow/utils/file_utils.py` creates... | Not Provided | 2026-05-18 | 2026-05-19 |
| CVE-2026-2734 json | In mlflow/mlflow versions up to 3.9.0, the `SearchModelVersions` REST API endpoint and the `mlflowSearchModelVersions` GraphQ... | Not Provided | 2026-05-21 | 2026-05-21 |
| CVE-2026-2652 json | A vulnerability in mlflow/mlflow versions 3.9.0 and earlier allows unauthenticated access to certain FastAPI routes when the ... | Not Provided | 2026-05-15 | 2026-05-15 |
| CVE-2026-2651 json | A vulnerability in MLflow versions <=3.10.1.dev0 allows unauthorized access to multipart upload (MPU) endpoints when the `--s... | Not Provided | 2026-05-25 | 2026-05-26 |
| CVE-2026-2614 json | A vulnerability in the `_create_model_version()` handler of `mlflow/server/handlers.py` in mlflow/mlflow versions 3.9.0 and e... | Not Provided | 2026-05-11 | 2026-05-12 |
| CVE-2026-2611 json | In MLflow version 3.9.0, the MLflow Assistant feature introduced improper origin validation in its /ajax-api endpoints. This ... | Not Provided | 2026-05-19 | 2026-05-19 |
| CVE-2026-2393 json | A Server-Side Request Forgery (SSRF) vulnerability exists in MLflow versions prior to 3.9.0. The `_create_webhook()` function... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-0596 json | A command injection vulnerability exists in mlflow/mlflow when serving a model with `enable_mlserver=True`. The `model_uri` i... | Not Provided | 2026-03-31 | 2026-04-01 |