Data Injection Vulnerability in MLflow by Databricks
CVE-2026-69146
6.5MEDIUM
What is CVE-2026-69146?
A data injection vulnerability exists in MLflow, an open-source AI engineering platform, affecting versions 3.13.0 through 3.15.0. The absence of LogInputs from BEFORE_REQUEST_HANDLERS in the mlflow/server/auth package allows authenticated users to exploit the API endpoint /api/2.0/mlflow/runs/log-inputs. This flaw enables a user to inject malicious DatasetInput records into another user's dataset inputs lineage metadata without requiring UPDATE permissions. The vulnerability has been addressed in version 3.15.0, emphasizing the necessity for users to update promptly to safeguard their MLflow instances.
Affected Version(s)
mlflow < 3.15.0
