Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-15379

Опубликовано: 30 мар. 2026
Источник: nvd
CVSS3: 10
CVSS3: 9.8
CVSS3: 9
EPSS Низкий

Описание

A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the _install_model_dependencies_to_env() function. When deploying a model with env_manager=LOCAL, MLflow reads dependency specifications from the model artifact's python_env.yaml file and directly interpolates them into a shell command without sanitization. This allows an attacker to supply a malicious model artifact and achieve arbitrary command execution on systems that deploy the model. The vulnerability affects versions 3.8.0 and is fixed in version 3.8.2.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:lfprojects:mlflow:*:*:*:*:*:*:*:*
Версия от 3.8.0 (включая) до 3.8.1 (включая)

EPSS

Процентиль: 79%
0.01994
Низкий

10 Critical

CVSS3

9.8 Critical

CVSS3

9 Critical

CVSS3

Дефекты

CWE-77
CWE-78

Связанные уязвимости

CVSS3: 9
redhat
5 месяцев назад

A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to_env()` function. When deploying a model with `env_manager=LOCAL`, MLflow reads dependency specifications from the model artifact's `python_env.yaml` file and directly interpolates them into a shell command without sanitization. This allows an attacker to supply a malicious model artifact and achieve arbitrary command execution on systems that deploy the model. The vulnerability affects versions 3.8.0 and is fixed in version 3.8.2.

CVSS3: 10
github
5 месяцев назад

MLflow Command Injection vulnerability

EPSS

Процентиль: 79%
0.01994
Низкий

10 Critical

CVSS3

9.8 Critical

CVSS3

9 Critical

CVSS3

Дефекты

CWE-77
CWE-78