GHSA-7qhf-v65m-g5f3 · Severity: critical · Ecosystem: pip — mlflow: FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization
In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled. This vulnerability affects the latest version of the repository. If job execution is enabled (`MLFLOW_SERVER_ENABLE_JOB_EXECUTION=true`) and any job function is allowlisted, any network client can submit, read, search, and cancel jobs without credentials, bypassing basic-auth entirely. This can lead to unauthenticated remote code execution if allowed jobs perform privileged actions such as shell execution or filesystem changes. Even if jobs are deemed safe, this still constitutes an authentication bypass, potentially resulting in job spam, denial of service (DoS), or data exposure in job results.
Conclusion & alert: CVE-2026-0545 is rated High Exploit Risk (83.7/100): CVSS Critical severity, with high exploitation likelihood (EPSS 10.82%, 93th percentile). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-01 | 14.02% | 10.82% | -3.19% |
| 2 | 2026-05-22 | 11.48% | 14.02% | +2.54% |
| 3 | 2026-05-15 | — | 11.48% | — |
Full EPSS history (7 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.8 | 3.1 | CRITICAL |
|
3.9 | 5.9 | [email protected] |
| 9.1 | 3.0 | CRITICAL |
|
3.9 | 5.2 | [email protected] |
GHSA-7qhf-v65m-g5f3 · Severity: critical · Ecosystem: pip — mlflow: FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| lfprojects | mlflow | — | cpe:2.3:a:lfprojects:mlflow:-:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://huntr.com/bounties/b2e5b028-9541-4d29-8703-a76f1a3734d8 | Third Party Advisory Exploit |