AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

79

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 267 results — Medium severity, Active exploitation
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via division-by-zero in QuantizedMul

CVE-2021-29528
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow CWE-369 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: divide-by-zero DoS in QuantizedConv2D

CVE-2021-29527
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: Conv2D divide-by-zero crashes ML workloads

CVE-2021-29526
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: div-by-zero DoS in Conv2D backprop op

CVE-2021-29524
5.5
EPSS 0.0%
DoS Framework Training Data
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via integer overflow in sparse ops

CVE-2021-29523
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: Conv3DBackprop div-by-zero crashes training

CVE-2021-29522
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS crash via negative sparse tensor shape

CVE-2021-29521
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow SparseCross: type confusion DoS

CVE-2021-29519
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: Conv3D div-by-zero crashes ML processes

CVE-2021-29517
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: null ptr deref crashes RaggedTensor ops

CVE-2021-29516
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: divide-by-zero DoS in DenseCountSparseOutput

CVE-2021-29554
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: ImmutableConst segfault crashes Python interpreter

CVE-2020-26268
4.4
EPSS 0.0%
DoS Framework Model
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: uninitialized memory read via crafted SavedModel

CVE-2020-26266
5.3
EPSS 0.1%
Supply Chain Data Leakage Code Execution Framework Model Inference
tensorflow CWE-908 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Lite: OOM DoS via crafted segment sum model

CVE-2020-15213
4.0
EPSS 0.2%
DoS Framework Inference Model
tensorflow CWE-770 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Lite: heap OOB RW via flatbuffer tensor index

CVE-2020-15211
4.8
EPSS 0.3%
Code Execution Supply Chain Data Extraction Framework Inference Model
tensorflow 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Lite: memory corruption via aliased tensors

CVE-2020-15210
6.5
EPSS 0.3%
Supply Chain DoS Code Execution Framework Inference Model
tensorflow CWE-787 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Lite: null ptr deref crashes model inference

CVE-2020-15209
5.9
EPSS 0.4%
DoS Supply Chain Framework Inference Model
tensorflow 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: null ptr deref DoS in eager mode ops

CVE-2020-15204
5.3
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: heap overflow in ragged tensor ops

CVE-2020-15201
4.8
EPSS 0.2%
Code Execution Data Extraction Framework Inference
tensorflow CWE-787 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: heap overflow in RaggedCountSparseOutput DoS

CVE-2020-15200
5.9
EPSS 0.3%
DoS Code Execution Framework Inference
tensorflow CWE-787 3.7K 3 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial