Two critical vulnerabilities in open-source platforms are under active exploitation, according to independent reports from watchTowr and VulnCheck. The first, CVE-2026-64849 (CVSS…
active exploitationcloud credentialsCVE-2026-25895CVE-2026-64849
MLflow is an open-source platform for the machine learning lifecycle, including experimentation, reproducibility, and deployment. It is affected by CVE-2026-64849, a critical…