CVE-2026-2393Disclosure(lfprojects / mlflow)

MEDIUMCVSS 7.1 · HIGH

Exploitation ongoing with high activity in latest observed window (2 mentions)

Immediate actions

  • Patch lfprojects mlflow systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

A Server-Side Request Forgery (SSRF) vulnerability exists in MLflow versions prior to 3.9.0. The `_create_webhook()` function in `mlflow/server/handlers.py` accepts a user-controlled `url` parameter without validation, and the `_send_webhook_request()` function in `mlflow/webhooks/delivery.py` sends HTTP POST requests to this attacker-controlled URL. This allows an authenticated attacker to force the MLflow backend to send HTTP requests to internal services, cloud metadata endpoints, or arbitrary external servers. The lack of input sanitization, URL scheme filtering, or allowlist validation on the webhook URL enables exploitation, potentially leading to cloud credential theft, internal network access, and data exfiltration.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

MEDIUM

Exploitation

ACTIVE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • mlflow

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • Peaked at 2 mentions on most recent observed day (2026-05-11)
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
mlflow

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-02-27: 1Mentions · 2026-05-11: 2Active Exploitation · 2026-05-11: 1Patch / Workaround · 2026-05-11: 1Technical Details · 2026-02-27: 1Technical Details · 2026-05-11: 202-2705-11
Signal classification2 categories
Disclosure
266.7%
Active Exploitation
133.3%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-02-271
Disclosure1
2026-05-112
Active Exploitation1Disclosure1
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-2393 A Server-Side Request Forgery (SSRF) vulnerability exists in MLflow versions prior to 3.9.0. The `_create_webhook()` function in `mlflow/server/handlers.py` accepts a u… https://www.cve.org/CVERecord?id=CVE-2026-2393

    Post summary

    The post announces a Server‑Side Request Forgery flaw in MLflow before v3.9.0, naming the vulnerable function and affected versions, but offers no PoC, exploit, or patch details.

    0000094
    57.5K followersView on X
  • Entity@0x2ed3bb60
    Active Exploitation

    🚨 Entity detected CVE-2026-2393: MLflow SSRF in webhook creation. Versions <3.9.0 allow authenticated attackers to probe internal services, cloud metadata endpoints. Credential theft vector confirmed. Patch to 3.9.0+ immediately. https://0x2ed3bb60.xyz/threat/99647b7436f6a0c1

    Post summary

    The tweet alerts that MLflow versions prior to 3.9.0 are actively exploited via SSRF to steal credentials; immediate patching to 3.9.0 or later is required.

    0000036
    7 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-23939 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in hexpm hexpm/hexpm ('http://Elixir.Hexpm.Store.Local' module) allows Relative … https://www.cve.org/CVERecord?id=CVE-2026-23939 ----- Traducción: CVE-2026-2393… http://infoflow.cloud`

    Post summary

    The post announces a new Path Traversal vulnerability (CVE-2026-23939) in hexpm, providing the CVE ID and a link to the official record, but no exploit code, patch, or evidence of active use.

    0000039
    55 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Applfprojectsmlflow---

Explore more