THREAT OPS › Threat News › [NVD] CVE-2025-15379 (CRITICAL 10.0) — A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to_env()` function. When deploying a model with `env_manager=LOCAL`, MLflow reads dependency specifications from the model artifact's
[NVD] CVE-2025-15379 (CRITICAL 10.0) — A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to_env()` function. When deploying a model with `env_manager=LOCAL`, MLflow reads dependency specifications from the model artifact's
CVE-2025-15379 CVSS: 10.0 CRITICAL Published: 2026-03-30T08:16:15.667
A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to_env()` function. When deploying a model with `env_manager=LOCAL`, MLflow reads dependency specifications from the model artifact's `python_env.yaml` file and directly interpolates
Indicators of compromise
- CVE-2025-15379cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-15379