VDB
KO

PYSEC-2025-52

Details

gateway_proxy_handler in MLflow before 3.1.0 lacks gateway_path validation.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / mlflow
Introduced in: 0 Fixed in: 39a419b4ec8fd11b59b3e50ab397042a490f2324
Fix pip install --upgrade 'mlflow>=39a419b4ec8fd11b59b3e50ab397042a490f2324'

References