CVE-2026-2734Disclosure(lfprojects / mlflow)

LOWCVSS 6.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

In mlflow/mlflow versions up to 3.9.0, the `SearchModelVersions` REST API endpoint and the `mlflowSearchModelVersions` GraphQL query lack proper per-model authorization checks when basic authentication is enabled. This allows any authenticated user to enumerate all model versions across all registered models, regardless of their permission level. The issue arises due to the absence of `SearchModelVersions` in the `BEFORE_REQUEST_VALIDATORS` and `AFTER_REQUEST_HANDLERS` for the REST API, and its omission from `GraphQLAuthorizationMiddleware.PROTECTED_FIELDS` for GraphQL. This vulnerability can expose sensitive information such as model names, version descriptions, source URIs, tags, and other metadata, potentially revealing proprietary or confidential details in multi-tenant environments. The issue is resolved in version 3.10.0.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-284

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • mlflow

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 2 mentions (2026-05-21); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
mlflow

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-05-21: 2Mentions · 2026-06-02: 1Technical Details · 2026-05-21: 2Technical Details · 2026-06-02: 105-2106-02
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-05-212
Disclosure2
2026-06-021
Disclosure1
Full discourse3 posts
  • DailyCVE@dailycve
    Disclosure

    🟠 MLflow, Missing Authorization (Bypass), #CVE-2026-2734 (Medium) -DC-Jun2026-92 https://dailycve.com/mlflow-missing-authorization-bypass-cve-2026-2734-medium-dc-jun2026-92/

    Post summary

    The post announces CVE-2026-2734 affecting MLflow with a missing authorization bypass, classified as medium severity, but provides no evidence of exploits, patches, or active attacks.

    0000054
    209 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-2734 In mlflow/mlflow versions up to 3.9.0, the `SearchModelVersions` REST API endpoint and the `mlflowSearchModelVersions` GraphQL query lack proper per-model authorization… https://www.cve.org/CVERecord?id=CVE-2026-2734 ----- Traducción: CVE-2026-2734 En … http://infoflow.cloud`

    Post summary

    The post reports CVE-2026-2734, noting that version 3.9.0 of mlflow suffers from missing per-model authorization on certain search endpoints, but provides no exploit details, Patch information, or evidence of active attacks.

    0000043
    79 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-2734 In mlflow/mlflow versions up to 3.9.0, the `SearchModelVersions` REST API endpoint and the `mlflowSearchModelVersions` GraphQL query lack proper per-model authorization… https://www.cve.org/CVERecord?id=CVE-2026-2734

    Post summary

    The post discloses a CVE impacting MLflow up to 3.9.0 that exposes a lack of per-model authorization on specific endpoints, but offers no PoC, exploit, or mitigation details.

    00000212
    57.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Applfprojectsmlflow---

Explore more