CVE security advisories and vulnerability history for mlflow by mlflow.
59
Total CVEs
Published
0
In CISA KEV
Exploited in the wild
31
Public exploits
With known exploit
7.9
Avg CVSS
2022–2026
Last updated
Overview
mlflow has 59 published CVE records since 2022, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 31 have a known public exploit. The average CVSS base score across scored CVEs is 7.9.
This page aggregates every publicly disclosed vulnerability (CVE) affecting mlflow, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of mlflow's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical14
High33
Medium9
Low2
1 additional CVE has no CVSS severity score.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of mlflow's CVEs are currently listed in CISA's KEV catalog.
Public exploits
31
31 of mlflow's CVEs have a known public exploit available.
Affected versions and CVEs
Browse every mlflow version named in a CVE, then pick one to see only the CVEs that affect it.
mlflow mlflow has 59 published CVE records since 2022.
How many mlflow mlflow CVEs are in CISA KEV?
None of mlflow mlflow's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Are there public exploits for mlflow mlflow vulnerabilities?
Yes — 31 of mlflow mlflow's CVEs have a known public exploit.
Which versions of mlflow mlflow are affected?
107 distinct mlflow mlflow versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
What are the most common weakness types in mlflow mlflow CVEs?
mlflow mlflow's CVEs most often map to these CWE weakness types: CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')), CWE-29 (Path Traversal: '\..\filename'), CWE-502 (Deserialization of Untrusted Data), CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')).
How many critical mlflow mlflow vulnerabilities are there?
mlflow mlflow has 14 critical and 33 high-severity CVEs.
What is the average severity of mlflow mlflow CVEs?
The average CVSS base score across mlflow mlflow's scored CVEs is 7.9.