Data Injection Vulnerability in MLflow by Databricks
CVE-2026-69146

6.5MEDIUM

Key Information:

Vendor

Mlflow

Status
Vendor
CVE Published:
17 August 2026

What is CVE-2026-69146?

A data injection vulnerability exists in MLflow, an open-source AI engineering platform, affecting versions 3.13.0 through 3.15.0. The absence of LogInputs from BEFORE_REQUEST_HANDLERS in the mlflow/server/auth package allows authenticated users to exploit the API endpoint /api/2.0/mlflow/runs/log-inputs. This flaw enables a user to inject malicious DatasetInput records into another user's dataset inputs lineage metadata without requiring UPDATE permissions. The vulnerability has been addressed in version 3.15.0, emphasizing the necessity for users to update promptly to safeguard their MLflow instances.

Affected Version(s)

mlflow < 3.15.0

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.