lfprojects
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 112 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 23, 2022 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →MCP Python SDK: WebSocket server transport does not support Host/Origin validation
MCP Python SDK: Experimental task handlers allow any client to access and cancel other clients' tasks
MCP Python SDK: HTTP transports serve session requests without verifying the authenticated principal
Authorization Bypass in mlflow/mlflow
MLflow Experiment-scoped Label Schema CRUD API authorization
MLflow Dataset Digest Computation digest_utils.py mlflow.data.digest_utils weak hash
Environment Variable Resolution Vulnerability in mlflow/mlflow
Improper Access Control in mlflow/mlflow
Missing Authorization Validation in mlflow/mlflow
Authorization Bypass in SearchModelVersions in mlflow/mlflow
Monitor lfprojects in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.