CVE-2026-8147 | MLflow up to 3.13.x Trace API access control
A vulnerability was found in MLflow up to 3.13.x. It has been classified as critical. The affected element is an unknown function of the component Trace API. The manipulation leads to improper access controls.
This vulnerability is documented as CVE-2026-8147. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More