AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

78

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 910 results — Active exploitation
HIGH EXPLOIT AVAIL

TensorFlow: DoS via oversized filterbank_channel_count

CVE-2022-41896
7.5
EPSS 0.2%
DoS Framework Inference
tensorflow CWE-1284 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: heap OOB in MirrorPadGrad causes DoS

CVE-2022-41895
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow Lite: buffer overflow in CONV_3D_TRANSPOSE op

CVE-2022-41894
8.1
EPSS 0.2%
Code Execution Supply Chain Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: DoS via TensorListResize malformed input

CVE-2022-41893
7.5
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: segfault DoS in TensorListConcat op

CVE-2022-41891
7.5
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: int32 overflow in BCast::ToShape causes DoS

CVE-2022-41890
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: NULL ptr deref DoS via quantized tensor input

CVE-2022-41889
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: GPU input validation DoS in bbox proposals

CVE-2022-41888
7.5
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: int32 overflow crashes Poisson loss function

CVE-2022-41887
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: integer overflow in image op causes DoS

CVE-2022-41886
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: FusedResizeAndPadConv2D overflow causes DoS

CVE-2022-41885
7.5
EPSS 0.2%
DoS Framework Inference
tensorflow CWE-131 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: DoS via malformed numpy array shape

CVE-2022-41884
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
CRITICAL EXPLOIT AVAIL

TensorFlow: heap OOB read in candidate sampler op

CVE-2022-41880
9.1
EPSS 0.2%
Data Extraction DoS Code Execution Framework Inference Training Data
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: executor crash via malformed op inputs (DoS)

CVE-2022-41883
7.5
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

Label Studio: SSRF + file read, self-reg bypass

CVE-2022-36551
6.5
EPSS 9.2%
Data Extraction Auth Bypass Data Leakage Training Data Framework
label-studio Patch: 1.6.0 CWE-918 1 6 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: DoS crash in transposed conv quantization

CVE-2022-36027
7.5
EPSS 0.3%
DoS Framework
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: DoS via malformed Requantize tensors

CVE-2022-36017
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: DoS via CHECK fail in fake_quant gradient

CVE-2022-36005
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: DoS via tf.random.gamma CHECK assertion

CVE-2022-36004
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: DoS via EmptyTensorList CHECK fail

CVE-2022-35998
7.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial