WhisperX tag archive

#CVE-2026-33865

This page collects WhisperX intelligence signals tagged #CVE-2026-33865. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-08 23:27:09 · GitHub Issues

1. MLflow 3.11.1 Patches Critical XSS Vulnerability (CVE-2026-33865) in Model Artifact UI

A critical security flaw in the MLflow machine learning platform has been patched, exposing authenticated users to session hijacking and unauthorized actions. The vulnerability, tracked as CVE-2026-33865, is a Stored Cross-Site Scripting (XSS) weakness in the platform's web interface. It stems from unsafe parsing of YA...