🔐 CVE Alert

CVE-2026-33866

UNKNOWN 0.0

Authorization Bypass in MLflow AJAX Endpoint

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
10th

MLflow is vulnerable to an authorization bypass affecting the AJAX endpoint used to download saved model artifacts. Due to missing access‑control validation, a user without permissions to a given experiment can directly query this endpoint and retrieve model artifacts they are not authorized to access. This issue affects MLflow version through 3.10.1

CWE CWE-862
Vendor mlflow
Product mlflow
Published Apr 7, 2026
Last Updated Apr 14, 2026
Stay Ahead of the Next One

Get instant alerts for mlflow mlflow

Be the first to know when new unknown vulnerabilities affecting mlflow mlflow are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Mlflow / Mlflow
0 ≤ 3.10.1

References

NVD ↗ CVE.org ↗ EPSS Data ↗
github.com: https://github.com/mlflow/mlflow/pull/21708 cert.pl: https://cert.pl/en/posts/2026/04/CVE-2026-33865/ afine.com: https://afine.com/blogs/attacking-mlflow-how-ml-artifacts-become-attack-vectors

Credits

Sławomir Zakrzewski (AFINE)