AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

79

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 435 results — High severity, Active exploitation
HIGH EXPLOIT AVAIL

TensorFlow TFLite: div-by-zero in EmbeddingLookup op

CVE-2021-29596
7.8
EPSS 0.0%
DoS Code Execution Supply Chain Framework Inference Model
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow TFLite: crash/RCE via malicious model file

CVE-2021-29595
7.8
EPSS 0.0%
Code Execution DoS Supply Chain Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TFLite: divide-by-zero in conv allows code execution

CVE-2021-29594
7.8
EPSS 0.0%
Code Execution DoS Supply Chain Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow TFLite: div-by-zero via crafted model file

CVE-2021-29593
7.8
EPSS 0.0%
Code Execution DoS Supply Chain Framework Inference
tensorflow 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow Lite: null-ptr deref in Reshape via 1D tensor

CVE-2021-29592
7.8
EPSS 0.0%
Code Execution DoS Supply Chain Framework Inference
tensorflow CWE-476 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TFLite: crafted model causes infinite loop / stack overflow

CVE-2021-29591
7.8
EPSS 0.0%
DoS Supply Chain Framework Inference
tensorflow CWE-674 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow TFLite: OOB read via empty tensor in Min/Max ops

CVE-2021-29590
7.1
EPSS 0.0%
Data Extraction DoS Supply Chain Framework Inference
tensorflow 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TFLite GatherNd: divide-by-zero crashes inference runtime

CVE-2021-29589
7.8
EPSS 0.0%
Supply Chain DoS Framework Model Inference
tensorflow 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow Lite: DoS/RCE via crafted model stride=0

CVE-2021-29588
7.8
EPSS 0.0%
DoS Code Execution Supply Chain Framework Inference
tensorflow CWE-369 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow TFLite: divide-by-zero via crafted model file

CVE-2021-29587
7.8
EPSS 0.0%
Supply Chain DoS Code Execution Framework Model Inference
tensorflow 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TFLite: div-by-zero in pooling crashes inference engine

CVE-2021-29586
7.8
EPSS 0.0%
DoS Code Execution Framework Inference
tensorflow 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow TFLite: divide-by-zero crashes ML inference

CVE-2021-29585
7.8
EPSS 0.0%
DoS Code Execution Supply Chain Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: heap overflow in FusedBatchNorm risks RCE

CVE-2021-29583
7.8
EPSS 0.0%
Code Execution DoS Framework Inference
tensorflow CWE-125 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: OOB heap read via Dequantize shape mismatch

CVE-2021-29582
7.1
EPSS 0.0%
Data Extraction Code Execution Framework Inference
tensorflow 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: heap buffer overflow in MaxPoolGrad kernel

CVE-2021-29579
7.8
EPSS 0.0%
Code Execution Framework Inference
tensorflow CWE-787 3.7K 2 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: heap buffer overflow in FractionalAvgPoolGrad

CVE-2021-29578
7.8
EPSS 0.0%
Code Execution Framework Training Data
tensorflow CWE-787 3.7K 2 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: heap overflow in AvgPool3DGrad op

CVE-2021-29577
7.8
EPSS 0.0%
Code Execution Framework Inference
tensorflow CWE-787 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: heap buffer overflow in MaxPool3DGradGrad op

CVE-2021-29576
7.8
EPSS 0.0%
Code Execution Framework
tensorflow CWE-787 3.7K 2 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: null ptr deref in MaxPool3DGradGrad ops

CVE-2021-29574
7.8
EPSS 0.0%
DoS Code Execution Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: heap OOB write via crafted bounding box op

CVE-2021-29571
7.8
EPSS 0.0%
Code Execution Supply Chain Framework Inference
tensorflow 3.7K 3 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial