cisa-kev
CISA KEV1 events on 2026-08-19role: thematic7d fetch windowcadence: dailyaccess: keyless
Extracts: CVE id, vendor, due date · metadata or bounded excerpt
Retention: D1 event history with canonical source link and deduplication metadata.
Access basis: Public endpoint; no project credential required.
Last ingested: 2026-08-25 · run status: success with data
CVE: CVE-2026-64849 Vendor/project: MLflow Product: MLflow Known ransomware campaign use: Unknown Due date: 2026-09-02 CWE: CWE-918 MLflow contains a server-side request forgery vulnerability that can allow attackers to reach internal or cloud metadata services and receive respon