
Upwind Security MDR@UpwindMDR
🚨High - MLflow Pickle Deserialization RCE (CVE-2026-96804, CVE-2026-96775) MLflow’s statsmodels and dspy flavors bypass MLFLOW_ALLOW_PICKLE_DESERIALIZATION=False. Crafted MLmodel artifacts can trigger unsafe pickle deserialization and execute arbitrary code when loaded. Deployments that never load untrusted model artifacts are not exposed. 👉Affected: MLflow statsmodels 2.1.0-3.14.0 | Upgrade to 3.15.0; MLflow dspy >=2.0 | Avoid loading untrusted dspy artifacts until a fix is available
0000024
305 followersView on X
