CVE-2026-33866
Authorization Bypass in MLflow AJAX Endpoint
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
10th
MLflow is vulnerable to an authorization bypass affecting the AJAX endpoint used to download saved model artifacts. Due to missing access‑control validation, a user without permissions to a given experiment can directly query this endpoint and retrieve model artifacts they are not authorized to access. This issue affects MLflow version through 3.10.1
| CWE | CWE-862 |
| Vendor | mlflow |
| Product | mlflow |
| Published | Apr 7, 2026 |
| Last Updated | Apr 14, 2026 |
Stay Ahead of the Next One
Get instant alerts for mlflow mlflow
Be the first to know when new unknown vulnerabilities affecting mlflow mlflow are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
Mlflow / Mlflow
0 ≤ 3.10.1
References
Credits
Sławomir Zakrzewski (AFINE)