CVE-2025-52967

MEDIUM5.8EPSS 0.25%

MLFlow SSRF via gateway_proxy_handler

Published: 6/23/2025Modified: 5/12/2026

Description

gateway_proxy_handler in MLflow before 3.1.0 lacks gateway_path validation.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N

References (7)