AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

79

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 910 results — Active exploitation
HIGH EXPLOIT AVAIL

TensorFlow: OOB read DoS via invalid quantize axis

CVE-2020-15265
7.5
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow Lite: OOB write in segment sum, memory corruption risk

CVE-2020-15214
8.1
EPSS 0.3%
Code Execution Supply Chain DoS Framework Inference Model
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Lite: OOM DoS via crafted segment sum model

CVE-2020-15213
4.0
EPSS 0.2%
DoS Framework Inference Model
tensorflow CWE-770 3.7K 4 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow Lite: heap OOB write via segment sum op

CVE-2020-15212
8.6
EPSS 0.2%
Code Execution Supply Chain Framework Inference Model
tensorflow CWE-787 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Lite: heap OOB RW via flatbuffer tensor index

CVE-2020-15211
4.8
EPSS 0.3%
Code Execution Supply Chain Data Extraction Framework Inference Model
tensorflow 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Lite: memory corruption via aliased tensors

CVE-2020-15210
6.5
EPSS 0.3%
Supply Chain DoS Code Execution Framework Inference Model
tensorflow CWE-787 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Lite: null ptr deref crashes model inference

CVE-2020-15209
5.9
EPSS 0.4%
DoS Supply Chain Framework Inference Model
tensorflow 3.7K 4 ATLAS
CRITICAL EXPLOIT AVAIL

TFLite: OOB read/write via tensor dimension mismatch

CVE-2020-15208
9.8
EPSS 0.3%
Code Execution Data Extraction Supply Chain Framework Inference
tensorflow 3.7K 3 ATLAS
CRITICAL EXPLOIT AVAIL

TFLite: OOB write via unchecked negative axis index

CVE-2020-15207
9.0
EPSS 1.4%
Code Execution DoS Framework Inference
tensorflow CWE-787 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: SavedModel protobuf DoS in inference serving

CVE-2020-15206
7.5
EPSS 0.5%
DoS Supply Chain Framework Inference Model
tensorflow 3.7K 5 ATLAS
CRITICAL EXPLOIT AVAIL

TensorFlow: heap overflow in StringNGrams, ASLR bypass

CVE-2020-15205
9.8
EPSS 0.5%
Code Execution Data Leakage Framework Inference
tensorflow CWE-787 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: null ptr deref DoS in eager mode ops

CVE-2020-15204
5.3
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
HIGH EXPLOIT AVAIL

TensorFlow: format string DoS in strings.as_string

CVE-2020-15203
7.5
EPSS 0.4%
DoS Framework Inference
tensorflow CWE-134 3.7K 3 ATLAS
CRITICAL EXPLOIT AVAIL

TensorFlow: Shard API int truncation enables memory corruption

CVE-2020-15202
9.0
EPSS 0.5%
Code Execution DoS Framework Inference
tensorflow 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: heap overflow in ragged tensor ops

CVE-2020-15201
4.8
EPSS 0.2%
Code Execution Data Extraction Framework Inference
tensorflow CWE-787 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: heap overflow in RaggedCountSparseOutput DoS

CVE-2020-15200
5.9
EPSS 0.3%
DoS Code Execution Framework Inference
tensorflow CWE-787 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via malformed ragged tensor input

CVE-2020-15199
5.9
EPSS 0.2%
DoS Framework Inference
tensorflow CWE-20 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: heap OOB in SparseCountSparseOutput ops

CVE-2020-15198
5.4
EPSS 0.2%
Code Execution DoS Framework Inference
tensorflow CWE-119 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via malformed sparse tensor input

CVE-2020-15197
6.3
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
CRITICAL EXPLOIT AVAIL

TensorFlow: heap OOB read in sparse/ragged count ops

CVE-2020-15196
9.9
EPSS 0.3%
Code Execution Data Extraction Framework Inference Training Data
tensorflow CWE-125 3.7K 4 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial