
We found an authz bypass in MLflow. Their auth layer validated every route in its "registry" -- but not every route was in the registry. If your authz is fail-open, you're always one forgotten endpoint away from a bypass. https://tachyon.so/blog/cve-2025-14297-mlflow-authorization-bypass
Post summary
The post announces a new authorization bypass vulnerability (CVE‑2025‑14297) in MLflow, highlighting that the auth layer checks only routes in its registry, leaving other routes unprotected; it includes a link to a detailed blog post.


