๐Ÿ” CVE Alert

CVE-2026-69146

MEDIUM 6.5

MLflow: LogInputs endpoint bypasses per-run UPDATE authorization in basic-auth

CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. From 3.13.0 until 3.15.0, LogInputs is absent from BEFORE_REQUEST_HANDLERS in the mlflow/server/auth package, allowing any authenticated user to call POST /api/2.0/mlflow/runs/log-inputs for another user's run_id and inject attacker-controlled DatasetInput records into the dataset_inputs lineage metadata without UPDATE permission. This issue is fixed in version 3.15.0.

CWE CWE-862
Vendor mlflow
Product mlflow
Published Aug 17, 2026
Stay Ahead of the Next One

Get instant alerts for mlflow mlflow

Be the first to know when new medium vulnerabilities affecting mlflow mlflow are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
High
Availability
None

Affected Versions

mlflow / mlflow
< 3.15.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/mlflow/mlflow/security/advisories/GHSA-3p64-6gvh-82v5 github.com: https://github.com/mlflow/mlflow/pull/24291 github.com: https://github.com/mlflow/mlflow/commit/5c34aec5669e2386b38b5ee0855cd61174e27693 github.com: https://github.com/mlflow/mlflow/releases/tag/v3.15.0