OFFLINE
Awaiting data
Security intelligence
MajorCritical vulnerability

CVE-2026-96804 (CVSS 8.8)

NVD · officialPublished Sep 23, 2026Risk 37/100EPSS 0.4%

MLflow's statsmodel flavor, versions 2.1.0 to 3.14.0, omits the MLFLOW_ALLOW_PICKLE_DESERIALIZATION=False security control entirely in _load_model(), which allows a remote attacker to execute arbitrary code via a crafted MLmodel artifact.

CVSS
8.8
AV:NetworkAC:LowPR:LowUI:NoneC:HighI:HighA:High

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source