MLflowGHSA-59v3-898r-qwhj
MLflow Server-Side Request Forgery (SSRF)
Critical9.8CVE-2023-6974 · Published Dec 20, 2023 · updated Jun 29, 2026
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| mlflow PyPI | < 2.9.2 | 2.9.2 |
Details and references
A malicious user could use this issue to access internal HTTP(s) servers and in the worst case (ie: aws instance) it could be abused to get a remote code execution on the victim machine.
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-918
- Also known as
- BIT-mlflow-2023-6974, CVE-2023-6974, PYSEC-2026-416
More MLflow advisories
All MLflow| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Dec 202023 | MLflow Path Traversal Vulnerability CVE-2023-6909High7.5fixed in 2.9.2 | High7.5 | 2.9.2 |
| Dec 202023 | MLFlow Path Traversal Vulnerability CVE-2023-6975Critical9.8fixed in 2.9.2 | Critical9.8 | 2.9.2 |
| Dec 202023 | MLflow Local File Disclosure Vulnerability CVE-2023-6977High7.5fixed in 2.9.2 | High7.5 | 2.9.2 |
| Dec 202023 | MLflow Path Traversal Vulnerability CVE-2023-6976High8.8fixed in 2.9.2 | High8.8 | 2.9.2 |
| Dec 192023 | mlflow Command Injection vulnerability CVE-2023-6940High8.8fixed in 2.9.2 | High8.8 | 2.9.2 |
| Dec 152023 | Path traversal in MLflow CVE-2023-6831Critical10.0fixed in 2.9.2 | Critical10.0 | 2.9.2 |