Loading
MLflow is an open source platform for the complete machine learning lifecycle
Declares an LLM dependency since 2024-05-30 (version 2.13.1).
Advisories that name mlflow as affected. Advisory records do not state an ecosystem, so packages with the same name in other ecosystems also match. For a version-exact check of your own dependencies, use Stack Check.
| Advisory | Severity | Affected | Fixed in | Published |
|---|---|---|---|---|
| GHSA-gqvg-gmmx-x4hm: MLFLOW_ALLOW_PICKLE_DESERIALIZATION=False safety control bypassed by mlflow.statsmodels flavor — RCE via crafted model artifact | High | >= 2.1.0, < 3.15.0 | 3.15.0 | 2026-09-01 |
| CVE-2026-69148GHSA-gqch-g4w5-7qcw: MLflow: CreateModelVersion source validation does not check READ permission on referenced run_id | High | < 3.15.0 | 3.15.0 | 2026-08-17 |
| CVE-2026-69146GHSA-3p64-6gvh-82v5: MLflow: LogInputs endpoint bypasses per-run UPDATE authorization in basic-auth | Medium | < 3.15.0 | 3.15.0 | 2026-08-17 |
| CVE-2026-64849GHSA-7gwp-5pfp-969j: MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding) | Critical | < 3.15.0 | 3.15.0 | 2026-08-17 |
As declared in PyPI metadata for version 3.17.0. Optional extras are listed with their extra name.
Among the packages in the registry; not every dependent on PyPI.