Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical MLflow and FUXA Vulnerabilities Exploited by Attackers

Critical MLflow and FUXA Vulnerabilities Exploited by Attackers

Posted on August 18, 2026 By CWS

Two significant vulnerabilities have been identified in MLflow, an open-source AI platform, and FUXA, a web-based SCADA/HMI software used in industrial automation. These flaws are currently being targeted by cyber attackers.

Overview of Vulnerabilities

According to reports from watchTowr and VulnCheck, the vulnerabilities include CVE-2026-64849, a Server-Side Request Forgery (SSRF) in MLflow, and CVE-2026-25895, a path traversal flaw in FUXA. The SSRF vulnerability affects MLflow versions below 3.15.0, allowing attackers to access cloud metadata endpoints and retrieve sensitive data. Meanwhile, the FUXA flaw impacts versions up to 1.2.9, enabling remote code execution by writing arbitrary files on the server.

Details on Exploitation

watchTowr reported that attackers are using CVE-2026-64849 to interact with internal cloud services and extract credentials. This exploitation was detected shortly after the vulnerability was publicly disclosed on August 17, 2026. The flaw exploits MLflow’s model-registry webhooks, bypassing previous security measures due to the way web redirects are handled.

For the FUXA vulnerability, VulnCheck observed malicious activities starting August 18, 2026, with a single IP actively scanning for vulnerable systems. Although no remote code execution payloads have been deployed yet, attackers have attempted to overwrite critical files like main.js.

Security Recommendations

Organizations using MLflow should urgently apply patches to affected systems, monitor for signs of compromise, and verify if any sensitive data has been exposed. Similarly, FUXA users need to secure their installations and remain vigilant against potential threats.

Previous vulnerabilities in FUXA, such as CVE-2026-25939 and CVE-2023-33831, have shown ongoing exploitation, highlighting the persistent risks associated with unpatched systems.

In conclusion, the exploitation of these vulnerabilities underscores the importance of timely security updates and careful monitoring of system activities to protect against unauthorized data access and potential threats.

The Hacker News Tags:cloud credentials, Cybersecurity, FUXA, MLflow, Patching, path traversal, remote code execution, Security, SSRF, Vulnerabilities

Post navigation

Previous Post: Hackers Exploit MLflow SSRF Flaw in Active Attacks
Next Post: CISA Issues Warning on Medusa Ransomware Tactics

Related Posts

Malicious Chrome Extension Steals MEXC API Keys by Masquerading as Trading Tool Malicious Chrome Extension Steals MEXC API Keys by Masquerading as Trading Tool The Hacker News
Adobe Reader Zero-Day Exploit Targets Users Since Late 2025 Adobe Reader Zero-Day Exploit Targets Users Since Late 2025 The Hacker News
How CISOs Can Drive Effective AI Governance How CISOs Can Drive Effective AI Governance The Hacker News
U.S. Arrests Key Facilitator in North Korean IT Worker Scheme, Seizes .74 Million U.S. Arrests Key Facilitator in North Korean IT Worker Scheme, Seizes $7.74 Million The Hacker News
Salesloft Takes Drift Offline After OAuth Token Theft Hits Hundreds of Organizations Salesloft Takes Drift Offline After OAuth Token Theft Hits Hundreds of Organizations The Hacker News
Checkmarx Data Breach: GitHub Data Exposed on Dark Web Checkmarx Data Breach: GitHub Data Exposed on Dark Web The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • CISA Issues Warning on Medusa Ransomware Tactics
  • Critical MLflow and FUXA Vulnerabilities Exploited by Attackers
  • Hackers Exploit MLflow SSRF Flaw in Active Attacks
  • Microsoft Copilot Vulnerabilities Risk Data Exposure
  • French Tax Authority Breach Exposes User Data

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • CISA Issues Warning on Medusa Ransomware Tactics
  • Critical MLflow and FUXA Vulnerabilities Exploited by Attackers
  • Hackers Exploit MLflow SSRF Flaw in Active Attacks
  • Microsoft Copilot Vulnerabilities Risk Data Exposure
  • French Tax Authority Breach Exposes User Data

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark