Threat+Constellation
Live UTC
← Incidents
INCIDENT 161Exploited vulnerabilityLOW / UNDER REVIEWSourced

CVE-2026-64849 added to CISA KEV: MLflow Server-Side Request Forgery Vulnerability

<p>CISA has added one new vulnerability to its <a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog">Known Exploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exploitation. &nbsp;</p> <ul> <li><a href="https://www.cve.org/CVERecord?id=CVE-2026-64849" target="_blank">CVE-2026-64849</a> MLflow Server-Side Request Forgery Vulnerability</li> </ul> <p>This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise.</p> <p><a href="https://www.cisa.gov/news-events/directives/bod-26-04-imple…

Last evidence update
19 AUG 2026 · 12:00 UTC
Source count
2
Status
reported
GovernmentCVE-2026-64849
Preceded by

Weak signals the observatory recorded before this incident became visible.

Observation history

How this record has evolved as evidence accumulated.

20 AUG · 05:03 UTC
Initial report
20 AUG · 05:03 UTC
Second independent source
20 AUG · 05:03 UTC
Summary updated from new evidence
Evidence