The Linux Foundation Projects ecosystem encompasses a diverse portfolio of widely deployed open-source software spanning machine learning (MLflow), data systems (Valkey), AI infrastructure (Model Context Protocol servers and implementations), and container runtimes (Apptainer), positioning it as a foundational layer across research, cloud-native, and enterprise deployments. Vulnerabilities affecting this vendor skew toward serious outcomes, with an elevated share reaching critical severity and a notable tendency toward public exploit availability, reflecting the sensitivity of the software supply chain and the appeal of foundational infrastructure to weaponization efforts. The exposure recurs across these distinct product lines through weakness classes including path-traversal variants, deserialization of untrusted data, and cross-site scripting, patterns characteristic of systems that parse external inputs, load serialized state, or expose web interfaces. Defenders should monitor this vendor's releases across its disparate products closely, as patches to foundational tools like Valkey or Apptainer can have broad downstream impact on containerized and ML workloads. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Lfprojects over time
Signals from CVEs in this vendor scope (114 CVEs).
114 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-49844CRITICAL Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user to use a specially crafted Lua script to manipulate the garb | Oct 3, 2025 | 9.9 | 83 | NO | NO |
CVE-2023-6909HIGH Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2. | Dec 18, 2023 | 7.5 | 79 | NO | YES |
CVE-2023-1177CRITICAL Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.2.1.
| Mar 24, 2023 | 9.8 | 79 | NO | YES |
CVE-2023-3765CRITICAL Absolute Path Traversal in GitHub repository mlflow/mlflow prior to 2.5.0. | Jul 19, 2023 | 10.0 | 77 | NO | YES |
CVE-2023-6018CRITICAL An attacker can overwrite any file on the server hosting MLflow without any authentication. | Nov 16, 2023 | 9.8 | 67 | NO | YES |
CVE-2024-3848HIGH A path traversal vulnerability exists in mlflow/mlflow version 2.11.0, identified as a bypass for the previously addressed CVE-2023-6909. The vulnerability arises from the applicat | May 16, 2024 | 7.5 | 55 | NO | YES |
CVE-2026-0545CRITICAL In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled. This vulnerabili | Apr 3, 2026 | 9.8 | 50 | NO | YES |
CVE-2025-11201CRITICAL MLflow Tracking Server Model Creation Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected inst | Oct 29, 2025 | 9.8 | 50 | NO | NO |
CVE-2023-43472HIGH An issue in MLFlow versions 2.8.1 and before allows a remote attacker to obtain sensitive information via a crafted request to REST API. | Dec 5, 2023 | 7.5 | 47 | NO | YES |
CVE-2023-2780CRITICAL Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.3.1. | May 17, 2023 | 9.8 | 46 | NO | YES |
Signals from CVEs in this vendor scope (114 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Lfprojects.
Media articles that mention a CVE ID that affects a product developed by Lfprojects — matched by CVE ID, not by vendor name.