AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

79

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 75 results — High severity, Active exploitation, has patch
HIGH EXPLOIT AVAIL

Marked Vulnerable to OOM Denial of Service via Infinite Recursion in marked Tokenizer

CVE-2026-41680
7.5
EPSS 0.1%
marked Patch: 18.0.2 CWE-400 3.9K
HIGH EXPLOIT AVAIL

A security flaw has been discovered in langflow-ai langflow up to 1.1.0. This issue affects the function create_upload_file of the file...

CVE-2026-6596
7.3
EPSS 0.1%
langflow-base Patch: 1.9.1 CWE-284
HIGH EXPLOIT AVAIL

Keras: safe_mode bypass allows RCE via model deserialization

CVE-2026-1462
8.8
EPSS 0.1%
Supply Chain Code Execution Framework Model
keras Patch: 3.13.2 CWE-502 1.5K 4 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: unauthenticated SSRF via unvalidated webhook_url

CVE-2026-40114
7.2
EPSS 0.0%
Auth Bypass Data Extraction Privacy Violation Agent API
PraisonAI Patch: 4.5.128 CWE-918 1 4 ATLAS
HIGH EXPLOIT AVAIL

praisonaiagents: SSRF in web_crawl exposes cloud metadata

CVE-2026-40160
--
EPSS 0.0%
Data Extraction Prompt Injection Agent Plugin
praisonaiagents Patch: 1.5.128 CWE-918 11 6 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: auto tools.py load enables local RCE

CVE-2026-40156
7.8
EPSS 0.0%
Supply Chain Code Execution Agent Framework Plugin
praisonai Patch: 4.5.128 CWE-94 1 4 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: AST sandbox bypass enables host RCE

CVE-2026-40158
8.6
EPSS 0.0%
Code Execution Data Extraction Agent Framework
PraisonAI Patch: 4.5.128 CWE-94 1 5 ATLAS
HIGH EXPLOIT AVAIL

praisonaiagents: env var expansion exposes production secrets

CVE-2026-40153
7.4
EPSS 0.0%
Data Extraction Prompt Injection Data Leakage Agent Plugin
praisonaiagents Patch: 1.5.128 CWE-526 11 5 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: auth bypass disables agent safety controls

CVE-2026-40149
7.9
EPSS 0.0%
Auth Bypass Code Execution Agent Framework
PraisonAI Patch: 4.5.128 CWE-306 1 4 ATLAS
HIGH EXPLOIT AVAIL

PraisonAIAgents: SSRF exposes cloud metadata via web_crawl

CVE-2026-40150
7.7
EPSS 0.0%
Data Extraction Prompt Injection Privacy Violation Agent Plugin
praisonaiagents Patch: 1.5.128 CWE-918 11 5 ATLAS
HIGH EXPLOIT AVAIL

praisonai: SSTI enables RCE via agent instructions

CVE-2026-39891
8.8
EPSS 0.0%
Code Execution Prompt Injection Data Extraction Agent Framework Plugin
praisonai Patch: 4.5.115 CWE-94 1 5 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: recipe registry path traversal file write

CVE-2026-39308
7.1
EPSS 0.1%
Supply Chain Code Execution Agent Framework
PraisonAI Patch: 4.5.113 CWE-22 1 4 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: recipe path traversal allows arbitrary file write

CVE-2026-39306
7.3
EPSS 0.0%
Supply Chain Code Execution Agent Framework
PraisonAI Patch: 4.5.113 CWE-22 1 6 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: Zip Slip enables arbitrary file write / RCE

CVE-2026-39307
8.1
EPSS 0.0%
Supply Chain Code Execution Agent Framework
PraisonAI Patch: 4.5.113 CWE-23 1 5 ATLAS
HIGH EXPLOIT AVAIL

BentoML: malicious bento archive RCE via Jinja2 SSTI

CVE-2026-35044
8.8
EPSS 0.0%
Supply Chain Code Execution Framework
bentoml Patch: 1.4.38 CWE-1336 22 5 ATLAS
HIGH EXPLOIT AVAIL

BentoML: cmd injection RCE on cloud build infra

CVE-2026-35043
7.8
EPSS 0.0%
Supply Chain Code Execution Framework
bentoml Patch: 1.4.38 CWE-78 22 5 ATLAS
HIGH EXPLOIT AVAIL

praisonaiagents: SSRF leaks cloud IAM credentials

CVE-2026-34954
8.6
EPSS 0.0%
Prompt Injection Data Extraction Agent Framework
praisonaiagents Patch: 1.5.95 CWE-918 11 5 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: sandbox escape via shell=True blocklist bypass

CVE-2026-34955
8.8
EPSS 0.0%
Code Execution Prompt Injection Auth Bypass Agent Framework Plugin
praisonai Patch: 4.5.97 CWE-78 1 6 ATLAS 1 incident
HIGH EXPLOIT AVAIL

PraisonAI: SSRF via api_base steals cloud IAM credentials

CVE-2026-34936
7.7
EPSS 0.0%
Data Extraction Auth Bypass Supply Chain Framework API Agent
praisonai Patch: 4.5.90 CWE-918 1 5 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: OS command injection via run_python() shell escape

CVE-2026-34937
7.8
EPSS 0.0%
Code Execution Prompt Injection Auth Bypass Agent Framework Plugin
praisonaiagents Patch: 1.5.90 CWE-78 11 6 ATLAS 1 incident

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial