ZenML is a modestly represented MLOps and machine-learning pipeline orchestration platform whose vulnerability footprint concentrates in a single, widely deployed product serving data science and model-deployment workflows. Its recurring weaknesses span web-tier input handling such as cross-site scripting, resource-allocation and throttling gaps, race conditions in concurrent execution, and improper access control—a mix characteristic of Python-based orchestration platforms that interface between data scientists, infrastructure, and deployed models. Current severity and exploitation figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zenml over time
Signals from CVEs in this vendor scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-25723HIGH ZenML Server in the ZenML machine learning package before 0.46.7 for Python allows remote privilege escalation because the /api/v1/users/{user_name_or_id}/activate REST API endpoin | Feb 27, 2024 | 8.8 | 70 | NO | YES |
CVE-2024-2083CRITICAL A directory traversal vulnerability exists in the zenml-io/zenml repository, specifically within the /api/v1/steps endpoint. Attackers can exploit this vulnerability by manipulatin | Apr 16, 2024 | 9.9 | 44 | NO | NO |
CVE-2025-8406HIGH ZenML version 0.83.1 is affected by a path traversal vulnerability in the `PathMaterializer` class. The `load` function uses `is_path_within_directory` to validate files during `da | Oct 5, 2025 | 7.8 | 24 | NO | NO |
CVE-2024-4680HIGH A vulnerability in zenml-io/zenml version 0.56.3 allows attackers to reuse old session credentials or session IDs due to insufficient session expiration. Specifically, the session | Jun 8, 2024 | 8.8 | 24 | NO | NO |
CVE-2024-28424HIGH zenml v0.55.4 was discovered to contain an arbitrary file upload vulnerability in the load function at /materializers/cloudpickle_materializer.py. This vulnerability allows attacke | Mar 14, 2024 | 8.8 | 24 | NO | NO |
CVE-2024-9340HIGH A Denial of Service (DoS) vulnerability in zenml-io/zenml version 0.66.0 allows unauthenticated attackers to cause excessive resource consumption by sending malformed multipart req | Mar 20, 2025 | 7.5 | 20 | NO | NO |
CVE-2024-5062MEDIUM A reflected Cross-Site Scripting (XSS) vulnerability was identified in zenml-io/zenml version 0.57.1. The vulnerability exists due to improper neutralization of input during web pa | Jun 30, 2024 | 6.1 | 18 | NO | NO |
CVE-2024-2383MEDIUM A clickjacking vulnerability exists in zenml-io/zenml versions up to and including 0.55.5 due to the application's failure to set appropriate X-Frame-Options or Content-Security-Po | Jun 6, 2024 | 6.1 | 18 | NO | NO |
CVE-2024-2035MEDIUM An improper authorization vulnerability exists in the zenml-io/zenml repository, specifically within the API PUT /api/v1/users/id endpoint. This vulnerability allows any authentica | Jun 6, 2024 | 6.5 | 18 | NO | NO |
CVE-2024-4311MEDIUM zenml-io/zenml version 0.56.4 is vulnerable to an account takeover due to the lack of rate-limiting in the password change function. An attacker can brute-force the current passwor | Nov 14, 2024 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (14 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zenml.
Media articles that mention a CVE ID that affects a product developed by Zenml — matched by CVE ID, not by vendor name.