
A vulnerability (CVE-2025-10279) in `MLflow` allows insecure temporary file creation, potentially leading to local privilege escalation. Assess your `MLflow` systems and monitor for official updates. #infosec #mlflow #vulnerability https://www.pulsepatch.io/posts/cve-2025-10279-mlflow-insecure-temp-file
Post summary
The post announces CVE-2025-10279 in MLflow, explaining that insecure temporary file creation could allow local privilege escalation, and urges users to monitor for vendor updates.

