Environment Variable Exposure in MLflow by Databricks
CVE-2026-4035

9.1CRITICAL

Key Information:

Vendor

Mlflow

Vendor
CVE Published:
3 June 2026

What is CVE-2026-4035?

A vulnerability exists in MLflow versions prior to 3.11.0 that can lead to the unauthorized disclosure of sensitive server-side environment variables through improperly secured gateway secrets. The issue permits the resolution of $ENV_VAR references within the api_key field during runtime, allowing attackers to intercept sensitive credentials sent in API authentication headers. This can be exploited by low-privileged authenticated users or even unauthenticated users in certain configurations, potentially leading to serious security ramifications including cloud credential leakage. It's crucial for users to update to version 3.11.0 to mitigate these risks effectively.

Affected Version(s)

mlflow/mlflow < 3.11.0

References

CVSS V3.0

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.