Unauthenticated full-read SSRF in webhook delivery
A Critical SSRF flaw let an unauthenticated caller cross the MLflow server network boundary through webhook redirects and DNS rebinding.
Unauthenticated input / Webhook delivery / Internal destination