20 Total CVEs
20 AI Analyzed
1 CISA KEV
7 Critical

Profile

5% ended up actively exploited 1 of 20 added to CISA KEV
35% rated critical (CVSS 9.0+) 7 critical, 13 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

20 CVEs in the last 12 months

Products

  • MLflow6
  • mlflow1

2 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-20 of 20 CVEs
CVE-2026-8147
Analyzed
8.1
mlflow MLflow

In MLflow versions prior to 3

2026-07-03
CVE-2026-64849
KEV Analyzed
9.3
mlflow mlflow

MLflow contains a Server-Side Request Forgery (SSRF) vulnerability that allows unauthenticated attackers to reach internal services due to improper va...

2026-08-18
CVE-2026-4137
Analyzed
7
mlflow Multiple Products

In mlflow/mlflow versions prior to 3

2026-05-19
CVE-2026-2652
Analyzed
8.6
mlflow Multiple Products

A vulnerability in mlflow/mlflow versions 3

2026-05-15
CVE-2026-2635
Analyzed
9.8
mlflow MLflow

MLflow contains a critical authentication bypass vulnerability due to hard-coded default credentials in the basic_auth.ini file, allowing remote attac...

2026-02-21
CVE-2026-2614
Analyzed
7.5
mlflow Multiple Products

A vulnerability in the `_create_model_version()` handler of `mlflow/server/handlers

2026-05-12
CVE-2026-2611
Analyzed
9.6
mlflow Multiple Products

In MLflow version 3.9.0, the MLflow Assistant feature introduced improper origin validation in its /ajax-api endpoints. This vulnerability allows a re...

2026-05-20
CVE-2026-2393
Analyzed
7.1
mlflow Multiple Products

A Server-Side Request Forgery (SSRF) vulnerability exists in MLflow versions prior to 3

2026-05-12
CVE-2026-2033
Analyzed
8.1
mlflow Multiple Products

MLflow Tracking Server Artifact Handler Directory Traversal Remote Code Execution Vulnerability

2026-02-21
CVE-2026-0596
Analyzed
9.6
mlflow MLflow

MLflow is vulnerable to command injection when serving models with `enable_mlserver=True`. Shell metacharacters in the `model_uri` allow for arbitrary...

2026-04-01
CVE-2026-0545
Analyzed
9.1
mlflow MLflow

An authentication bypass in MLflow's FastAPI job endpoints allows unauthenticated attackers to submit and execute jobs, potentially leading to remote...

2026-04-04
CVE-2025-15381
Analyzed
8.1
mlflow Multiple Products

In the latest version of mlflow/mlflow, when the `basic-auth` app is enabled, tracing and assessment endpoints are not protected by permission validat...

2026-03-28
CVE-2025-15379
Analyzed
10
mlflow MLflow

A command injection vulnerability in MLflow's model serving container initialization allows attackers to execute arbitrary commands by supplying malic...

2026-03-30
CVE-2025-15036
Analyzed
9.6
mlflow MLflow

A path traversal vulnerability in MLflow's archive extraction function allows attackers to overwrite arbitrary files and escape sandboxed directories...

2026-03-30
CVE-2025-15031
Analyzed
8.1
mlflow Multiple Products

A vulnerability in MLflow's pyfunc extraction process allows for arbitrary file writes due to improper handling of tar archive entries

2026-03-19
CVE-2025-14287
Analyzed
7.5
mlflow Multiple Products

A command injection vulnerability exists in mlflow/mlflow versions before v3

2026-03-17
CVE-2025-14279
Analyzed
8.1
mlflow Multiple Products

MLFlow versions up to and including 3

2026-01-12
CVE-2025-11201
Analyzed
8.1
mlflow Multiple Products

MLflow Tracking Server Model Creation Directory Traversal Remote Code Execution Vulnerability

2025-10-29
CVE-2025-11200
Analyzed
8.1
mlflow Multiple Products

MLflow Weak Password Requirements Authentication Bypass Vulnerability

2025-10-29
CVE-2025-10279
Analyzed
7
mlflow Multiple Products

In mlflow version 2

2026-02-02