SecAlerts
m

mlflow

Security Risk Profile

54
/100
medium

Security Risk Score

Comprehensive risk assessment based on 26 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from March 20, 2025 to present

26
Total CVEs
20
Critical+High
1
Exploited
15
Unpatched

Threat Assessment

Avg CVSS
7.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
15
Critical/High
Risk Level
54/100
medium
⚠️ 1 Active Exploits📈 1 in Last 30 Days

Severity Distribution

Critical
3
High
17
Medium
3
Low
1

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
1

Age Distribution

Common Weaknesses (CWE)

1
Path Traversal
3
2
SSRF
2
3
CSRF
2
4
Command Injection
2
5
SQL Injection
1

Most Affected Products

1. MLflow MLflow27
2. Lfprojects Mlflow10
3. pip/mlflow9
4. MLflow Tracking Server2
5. MLflow MLflow Experiment-scoped Label Schema CRUD API1

Recent Vulnerabilities

See more →

Monitor mlflow in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

mlflow Security Vulnerabilities & Risk Score | 26 CVEs | SecAlerts - SecAlerts