cyber
CVE-2026-64849 — MLflow Server-Side Request Forgery Vulnerability
MLflow contains a server-side request forgery vulnerability that can allow attackers to reach internal or cloud metadata services and receive response_status and response_body.
Reported by CISA KEV
Read the complete report at CISA KEV ↗
Verification notice
IntelMap indexes open-source reporting. This page identifies what a source reported; it does not independently confirm the claim.
1 recorded state
Signal first indexedP3 · 98% quality · 1 source