AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
AI/ML CVEs Tracked
Critical
New This Week
In CISA KEV
Latest AI Security Threats
Showing 20 of 230 results — Medium severity, Active exploitation, no patchA security flaw has been discovered in Ollama up to 0.20.2. This affects the function digestToPath of the file x/imagegen/transfer/transfer.go of the component...
CVE-2026-7020 A vulnerability was detected in lm-sys fastchat up to 0.2.36. Impacted is the function add_text of the component Arena Side-by-Side View Handler. The...
CVE-2026-6608 A vulnerability was detected in langflow-ai langflow up to 1.8.3. The impacted element is the function get_client_ip/install_mcp_config of the file...
CVE-2026-6599 PraisonAI: XSS via no-op HTML sanitizer in agent output
CVE-2026-40112 openai-realtime-ui: SSRF in API proxy endpoint
CVE-2026-5803 lollms: sessions persist after password reset
CVE-2026-1163 MLflow: auth bypass exposes model artifacts across experiments
CVE-2026-33866 smolagents: code injection via incomplete sandbox fix
CVE-2026-4963 AI component: IDOR enables unauthorized data access
CVE-2026-30886 AI component: Input Validation flaw enables exploitation
CVE-2026-4538 gradio: Weak Credentials allow account compromise
CVE-2026-27167 OpenClaw: path traversal enables arbitrary file read
CVE-2026-25475 bentoml: Path Traversal enables file access
CVE-2026-24123 BetterDocs: Info Disclosure leaks sensitive data
CVE-2025-14980 AI component: Missing Auth allows unauthorized operations
CVE-2025-14371 local-deep-research: SSRF allows internal network access
CVE-2025-67743 langflow: SSRF allows internal network access
CVE-2025-68477 AI component: SQL Injection exposes database
CVE-2025-13922 dspy: security flaw enables exploitation
CVE-2025-12695 smolagents: security flaw enables exploitation
CVE-2025-11844 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert