{"id":"PYSEC-2026-1646","summary":"MLflow Cross-Site Request Forgery (CSRF) vulnerability","details":"A Cross-Site Request Forgery (CSRF) vulnerability exists in the Signup feature of mlflow/mlflow versions 2.17.0 to 2.20.1. This vulnerability allows an attacker to create a new account, which may be used to perform unauthorized actions on behalf of the malicious user.","aliases":["BIT-mlflow-2025-1473","CVE-2025-1473","GHSA-969w-gqqr-g6j3"],"modified":"2026-07-07T17:56:21.799725226Z","published":"2026-07-07T14:34:58.736545Z","references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-1473"},{"type":"WEB","url":"https://github.com/mlflow/mlflow/commit/ecfa61cb43d3303589f3b5834fd95991c9706628"},{"type":"PACKAGE","url":"https://github.com/mlflow/mlflow"},{"type":"WEB","url":"https://huntr.com/bounties/43dc50b6-7d1e-41b9-9f97-f28809df1d45"},{"type":"PACKAGE","url":"https://pypi.org/project/mlflow"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-969w-gqqr-g6j3"}],"affected":[{"package":{"name":"mlflow","ecosystem":"PyPI","purl":"pkg:pypi/mlflow"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"2.17.0"},{"fixed":"2.20.3"}]}],"versions":["2.17.0","2.17.1","2.17.2","2.18.0","2.18.0rc0","2.19.0","2.19.0rc0","2.20.0","2.20.0rc0","2.20.1","2.20.2"],"database_specific":{"source":"https://github.com/pypa/advisory-database/blob/main/vulns/mlflow/PYSEC-2026-1646.yaml"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N"}]}