AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

79

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 160 results — Critical severity, Active exploitation
CRITICAL EXPLOIT AVAIL

Langchain-Chatchat: path traversal in KB upload

CVE-2025-6853
9.8
EPSS 0.6%
Code Execution Data Extraction Supply Chain Framework RAG
langchain-chatchat CWE-22 2.6K 5 ATLAS
CRITICAL EXPLOIT AVAIL

LLaMA-Factory: RCE via unsafe checkpoint deserialization

CVE-2025-53002
9.8
EPSS 4.2%
Code Execution Supply Chain Framework Model
llamafactory CWE-94 1 6 ATLAS
CRITICAL EXPLOIT AVAIL

LangChain RequestsToolkit: SSRF exposes cloud metadata

CVE-2025-2828
10.0
EPSS 0.2%
Data Extraction Auth Bypass Framework Agent
langchain CWE-918 2.6K 5 ATLAS
CRITICAL EXPLOIT AVAIL

llama_index: SQL injection in vector store integrations

CVE-2025-1793
9.8
EPSS 0.1%
Data Extraction Data Leakage Supply Chain Framework RAG
llama-index Patch: 0.12.28 CWE-89 229 5 ATLAS
CRITICAL EXPLOIT AVAIL

vLLM: RCE via exposed TCPStore in distributed inference

CVE-2025-47277
9.8
EPSS 0.9%
Code Execution Data Extraction Inference Framework
vllm CWE-502 126 4 ATLAS
CRITICAL EXPLOIT AVAIL

browser-use: URL allowlist bypass enables SSRF in agents

CVE-2025-47241
9.3
EPSS 0.2%
Auth Bypass Data Extraction Agent Framework
browser-use Patch: 0.1.45 CWE-647 65 5 ATLAS
CRITICAL EXPLOIT AVAIL

vLLM: RCE via pickle deserialization on ZeroMQ

CVE-2025-32444
9.8
EPSS 2.5%
Code Execution Supply Chain Inference Framework
vllm CWE-502 126 5 ATLAS
CRITICAL EXPLOIT AVAIL

PyTorch: RCE bypasses weights_only=True safe-load guard

CVE-2025-32434
9.8
EPSS 1.2%
Code Execution Supply Chain Framework Model Inference
pytorch CWE-502 21.7K 6 ATLAS
CRITICAL EXPLOIT AVAIL

jupyter-remote-desktop-proxy: VNC network exposure

CVE-2025-32428
--
EPSS 0.2%
Auth Bypass Data Leakage Privacy Violation Framework
jupyter-remote-desktop-proxy Patch: 3.0.1 CWE-668 1.9K 5 ATLAS
CRITICAL EXPLOIT AVAIL

BentoML: RCE via insecure deserialization in runner

CVE-2025-32375
9.8
EPSS 67.3%
Code Execution Data Extraction Supply Chain Framework Inference
bentoml CWE-502 22 5 ATLAS
CRITICAL KEV SCANNER

Langflow: Unauth RCE via code injection endpoint

CVE-2025-3248
9.8
EPSS 91.8%
Code Execution Auth Bypass Framework Agent
langflow CWE-94 5 ATLAS
CRITICAL EXPLOIT AVAIL

BentoML: unauthenticated RCE via insecure deserialization

CVE-2025-27520
9.8
EPSS 81.0%
Code Execution Supply Chain Framework Inference
bentoml CWE-502 22 5 ATLAS
CRITICAL EXPLOIT AVAIL

InvokeAI: RCE via unsafe torch.load deserialization

CVE-2024-12029
9.8
EPSS 44.2%
Code Execution Supply Chain Framework Model
CWE-502 5 ATLAS
CRITICAL EXPLOIT AVAIL

pytorch-lightning: file upload RCE (Windows)

CVE-2024-8019
9.1
EPSS 2.1%
Code Execution Supply Chain Framework Training Data
pytorch-lightning Patch: 2.4.0 CWE-434 1.6K 4 ATLAS
CRITICAL EXPLOIT AVAIL

llama-index finchat: SQL injection enables RCE

CVE-2024-12909
10.0
EPSS 4.1%
Code Execution Supply Chain Data Extraction Agent Framework Plugin
llama-index-packs-finchat CWE-89 229 5 ATLAS
CRITICAL EXPLOIT AVAIL

llama-index DuckDB retriever: SQLi enables RCE

CVE-2024-11958
9.8
EPSS 4.1%
Code Execution Supply Chain Data Extraction Framework RAG Plugin
llama-index-retrievers-duckdb-retriever Patch: 0.4.0 CWE-89 229 5 ATLAS
CRITICAL EXPLOIT AVAIL

BentoML: unauthenticated RCE via runner deserialization

CVE-2024-9070
9.8
EPSS 0.4%
Code Execution Supply Chain Framework Inference
bentoml CWE-502 22 3 ATLAS
CRITICAL EXPLOIT AVAIL

vllm: RCE via unsafe pickle deserialization in RPC server

CVE-2024-9053
9.8
EPSS 10.0%
Code Execution Supply Chain Framework Inference
vllm CWE-78 126 5 ATLAS
CRITICAL EXPLOIT AVAIL

vllm: RCE via unsafe pickle deserialization in MessageQueue

CVE-2024-11041
9.8
EPSS 5.6%
Code Execution Framework Inference
vllm CWE-502 126 4 ATLAS
CRITICAL EXPLOIT AVAIL

vLLM: RCE via unsafe deserialization in Mooncake KV

CVE-2025-29783
9.0
EPSS 2.8%
Code Execution Supply Chain Framework Inference
vllm CWE-502 126 5 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial