vulnerability MLflow Vulnerability Exploited for Cloud Credential Theft A vulnerability in MLflow, a popular AI engineering platform, has been exploited by threat actors to steal cloud credentials and secrets. The flaw, tracked as CVE-2026-64849, allows unauthenticated SSRF attacks, leading to widespread exploitation and prompting immediate patching recommendations from CISA and other secu… SecurityWeek · Aug 20, 2026 Critical CVE-2026-64849ssrfcloudmlflow