CPE
high
advisory
Use-After-Free Vulnerability in QEMU 9pfs Subsystem (CVE-2026-93834)
1 TTP 1 CVEA race condition in QEMU's 9pfs subsystem allows a malicious guest to trigger a use-after-free, enabling directory traversal escapes and potential code execution on the host.
QEMU +1
1t
1c
updated
low
advisory
Security Control Bypass in MLflow
1 TTP 1 CVEA vulnerability in the MLflow machine learning lifecycle platform allows unauthenticated remote attackers to bypass security controls, resulting in potential data disclosure or unauthorized data manipulation.
MLflow
vulnerability
data-integrity
security-bypass
1t
1c