VendorsLF Projectsmlflowall versions
Vulnerabilities

LF Projects MLflow

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

77CVEs
CVE-2024-37053
Deserialization of untrusted data can occur in versions of the MLflow platform running version 1.1.0 or newer, enabling a maliciously uploaded scikit-learn model to run arbitrary code on an end user’s system when interacted with.
Published 2024-06-04 · Analyzed
8.8EPSS 0.006
CVE-2026-13484
MLflow Experiment-scoped Label Schema CRUD API authorization
Published 2026-06-28 · Analyzed
8.8EPSS 0.005
CVE-2026-2652
Authentication Bypass in mlflow/mlflow
Published 2026-05-15 · Analyzed
8.6EPSS 0.208
CVE-2022-0736
Insecure Temporary File in mlflow/mlflow
Published 2022-02-23 · Modified
8.2EPSS 0.016
CVE-2023-6831
Path Traversal: '\..\filename' in mlflow/mlflow
Published 2023-12-15 · Modified
8.1EPSS 0.033
CVE-2024-1560
Path Traversal Vulnerability in mlflow/mlflow
Published 2024-04-16 · Analyzed
8.1EPSS 0.009
CVE-2026-8147
Authorization Bypass in mlflow/mlflow
Published 2026-07-02 · Analyzed
8.1EPSS 0.005
CVE-2025-15381
Unauthorized Access to Tracing and Assessment Endpoints in mlflow/mlflow
Published 2026-03-27 · Modified
8.1EPSS 0.003
CVE-2025-14279
DNS Rebinding Vulnerability in mlflow/mlflow
Published 2026-01-12 · Analyzed
8.1EPSS 0.002
CVE-2026-4137
Incomplete Fix for CVE-2025-10279: Insecure Temporary Directory Permissions in mlflow/mlflow
Published 2026-05-18 · Analyzed
7.8EPSS 0.002
CVE-2023-6909
Path Traversal: '\..\filename' in mlflow/mlflow
Published 2023-12-18 · Modified
7.5EPSS 0.897
CVE-2024-3848
Path Traversal Bypass in mlflow/mlflow
Published 2024-05-16 · Analyzed
7.5EPSS 0.433
CVE-2023-43472
An issue in MLFlow versions 2.8.1 and before allows a remote attacker to obtain sensitive information via a crafted request to REST API.
Published 2023-12-05 · Modified
7.5EPSS 0.366
CVE-2024-2928
Local File Inclusion (LFI) via URI Fragment Parsing in mlflow/mlflow
Published 2024-06-06 · Modified
7.5EPSS 0.218
CVE-2025-0453
Denial of Service through Batched Queries in GraphQL in mlflow/mlflow
Published 2025-03-20 · Modified
7.5EPSS 0.110
CVE-2026-2614
Arbitrary File Read via Prompt Tag Source Validation Bypass in mlflow/mlflow
Published 2026-05-11 · Modified
7.5EPSS 0.036
CVE-2024-1483
Path Traversal Vulnerability in mlflow/mlflow
Published 2024-04-16 · Analyzed
7.5EPSS 0.027
CVE-2024-8859
Path Traversal in mlflow/mlflow
Published 2025-03-20 · Analyzed
7.5EPSS 0.027
CVE-2023-30172
A directory traversal vulnerability in the /get-artifact API method of the mlflow platform up to v2.0.1 allows attackers to read arbitrary files on the server via the path parameter.
Published 2023-05-11 · Modified
7.5EPSS 0.010
CVE-2024-1558
Path Traversal Vulnerability in mlflow/mlflow
Published 2024-04-16 · Analyzed
7.5EPSS 0.009
CVE-2024-1594
Local File Read via Path Traversal in mlflow/mlflow
Published 2024-04-16 · Analyzed
7.5EPSS 0.007
CVE-2024-1593
Path Traversal via Parameter Smuggling in mlflow/mlflow
Published 2024-04-16 · Analyzed
7.5EPSS 0.007
CVE-2026-2393
Server-Side Request Forgery (SSRF) in mlflow/mlflow
Published 2026-05-11 · Analyzed
7.1EPSS 0.003
CVE-2025-1473
CSRF in mlflow/mlflow
Published 2025-03-20 · Analyzed
7.1EPSS 0.002
CVE-2025-10279
Privilege Escalation in mlflow/mlflow
Published 2026-02-02 · Analyzed
7.0EPSS 0.002
CVE-2024-27134
Excessive directory permissions in MLflow leads to local privilege escalation when using spark_udf
Published 2024-11-25 · Analyzed
7.0EPSS 0.001
CVE-2023-6568
Reflected XSS via Content-Type Header in mlflow/mlflow
Published 2023-12-07 · Modified
6.5EPSS 0.017
CVE-2026-2734
Authorization Bypass in SearchModelVersions in mlflow/mlflow
Published 2026-05-21 · Analyzed
6.5EPSS 0.004
CVE-2026-3198
Improper Access Control in mlflow/mlflow
Published 2026-06-02 · Analyzed
6.5EPSS 0.002
CVE-2025-1474
Weak Password Requirements in mlflow/mlflow
Published 2025-03-20 · Analyzed
5.5EPSS 0.004
CVE-2024-3099
Denial of Service and Data Model Poisoning via URL Encoding in mlflow/mlflow
Published 2024-06-06 · Modified
5.4EPSS 0.004
CVE-2024-4263
Improper Access Control in mlflow/mlflow
Published 2024-05-16 · Analyzed
5.4EPSS 0.003
CVE-2026-33865
Stored XSS via unsafe YAML parsing in MLflow
Published 2026-04-07 · Analyzed
5.4EPSS 0.002
CVE-2024-6838
Uncontrolled Resource Consumption in mlflow/mlflow
Published 2025-03-20 · Analyzed
5.3EPSS 0.007
CVE-2023-1176
Absolute Path Traversal in mlflow/mlflow
Published 2023-03-24 · Modified
5.3EPSS 0.006
CVE-2026-33866
Authorization Bypass in MLflow AJAX Endpoint
Published 2026-04-07 · Analyzed
5.3EPSS 0.004
CVE-2026-10803
MLflow Dataset Digest Computation digest_utils.py mlflow.data.digest_utils weak hash
Published 2026-06-04 · Analyzed
3.6EPSS 0.001
← Prev2 / 2