LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →

CVE-2026-0596 - Vulnerability Analysis

CriticalCVSS: 9.6

Last Updated: March 31, 2026

mlflow/mlflow - Command Injection

Published: March 31, 2026Updated: March 31, 2026

Overview

mlflow/mlflow contains a command injection caused by unsanitized embedding of model_uri in a shell command when serving a model with enable_mlserver=True, letting attackers execute arbitrary commands, exploit requires crafted model_uri with shell metacharacters.

Severity & Score

Severity: Critical
CVSS Score: 9.6
EPSS Score: 0.0%(Probability of exploitation in next 30 days)

Impact

Attackers can execute arbitrary commands, potentially escalating privileges if the service runs with higher privileges.

Mitigation

Update to the latest version of mlflow/mlflow where this issue is fixed.

Social Media Activity(4 posts)

TheHackerWire
TheHackerWire
@thehackerwire
Mar 31, 2026

šŸ”“ CVE-2026-0596 - Critical (9.6) A command injection vulnerability exists in mlflow/mlflow when serving a model with `enable_mlserver=True`. The `model_uri` is embedded directly into a shell command executed via `bash -c` without proper sanitization. If the `model_uri` contains s... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-0596/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Mar 31, 2026

šŸ”“ CVE-2026-0596 - Critical (9.6) A command injection vulnerability exists in mlflow/mlflow when serving a model with `enable_mlserver=True`. The `model_uri` is embedded directly into a shell command executed via `bash -c` without proper sanitization. If the `model_uri` contains s... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-0596/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Mar 31, 2026

šŸ”“ CVE-2026-0596 - Critical (9.6) A command injection vulnerability exists in mlflow/mlflow when serving a model with `enable_mlserver=True`. The `model_uri` is embedded directly into a shell command executed via `bash -c` without proper sanitization. If the `model_uri` contains s... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-0596/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Mar 31, 2026

šŸ”“ CVE-2026-0596 - Critical (9.6) A command injection vulnerability exists in mlflow/mlflow when serving a model with `enable_mlserver=True`. The `model_uri` is embedded directly into a shell command executed via `bash -c` without proper sanitization. If the `model_uri` contains s... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-0596/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post

Details

CVE ID
CVE-2026-0596
Severity
Critical
CVSS Score
9.6
Type
command_injection
Status
new
EPSS
0.0%
Social Posts
4

CWE

  • CWE-78

CVSS Metrics

CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

EPSS Score

0.0%Probability of exploitation in the next 30 days