MLflowGHSA-wv8q-4f85-2p8p
MLflow Path Traversal Vulnerability
High8.8CVE-2023-6976 · Published Dec 20, 2023 · updated Jul 7, 2026
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| mlflow PyPI | < 2.9.2 | 2.9.2 |
Details and references
This vulnerability is capable of writing arbitrary files into arbitrary locations on the remote filesystem in the context of the server process.
- CVSS 3.0
- CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-434
- Also known as
- BIT-mlflow-2023-6976, CVE-2023-6976, PYSEC-2026-1662
More MLflow advisories
All MLflow| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Dec 202023 | MLflow Server-Side Request Forgery (SSRF) CVE-2023-6974Critical9.8fixed in 2.9.2 | Critical9.8 | 2.9.2 |
| Dec 202023 | MLflow Path Traversal Vulnerability CVE-2023-6909High7.5fixed in 2.9.2 | High7.5 | 2.9.2 |
| Dec 202023 | MLFlow Path Traversal Vulnerability CVE-2023-6975Critical9.8fixed in 2.9.2 | Critical9.8 | 2.9.2 |
| Dec 202023 | MLflow Local File Disclosure Vulnerability CVE-2023-6977High7.5fixed in 2.9.2 | High7.5 | 2.9.2 |
| Dec 192023 | mlflow Command Injection vulnerability CVE-2023-6940High8.8fixed in 2.9.2 | High8.8 | 2.9.2 |
| Dec 152023 | Path traversal in MLflow CVE-2023-6831Critical10.0fixed in 2.9.2 | Critical10.0 | 2.9.2 |