References https://nvd.nist.gov/vuln/detail/cve-2023-1176 https://github.com/mlflow/mlflow/security/advisories/GHSA-wp72-7hj9-5265 https://github.com/mlflow/mlflow/issues/7884 https://www.4hou.com/posts/KEKn https://zhi.oscs1024.com/28464.html https://advisories.gitlab.com/pypi/mlflow/CVE-2023-1176/ https://vuldb.com/?id.223809 https://github.com/pypa/advisory-database/blob/main/vulns/mlflow/PYSEC-2023-28.yaml https://app.opencve.io/cve/?page=2&product=mlflow&vendor=lfprojects
Related VulnerabilitiesMLflow /api/2.0/mlflow/webhooks 服务器端请求伪造漏洞(CVE-2026-64849)PoCCVE-2026-64849: MLflow Webhook SSRF - Unauthenticated Full-Read via Redirect BypassPoCCVE-2026-2614: MLflow <= 3.9.0 - Arbitrary File ReadMLflow 存在任意文件读取漏洞(CVE-2026-2614)PoCCVE-2026-2652: MLflow < 3.10.0 - Authentication Bypass on FastAPI RoutesMLflow /ajax-api/3.0/jobs/search 权限绕过漏洞 (CVE-2026-2652)PoCCVE-2026-0545: MLflow Job API - Authentication BypassPoCCVE-2023-1177: Mlflow <2.2.1 - Local File InclusionPoCCVE-2023-2356: Mlflow <2.3.0 - Local File InclusionPoCCVE-2023-2780: Mlflow <2.3.1 - Local File Inclusion BypassPoCCVE-2023-3765: MLflow Absolute Path TraversalPoCCVE-2023-43472: MLFlow < 2.8.1 - Sensitive Information DisclosurePoCCVE-2023-6018: Mlflow - Arbitrary File Write