AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
AI/ML CVEs Tracked
Critical
New This Week
In CISA KEV
Latest AI Security Threats
Showing 20 of 570 results — Medium severitylangchain_community: SSRF allows internal network access
CVE-2026-26019 n8n: Input Validation flaw enables exploitation
CVE-2026-25631 pydantic-ai: Path Traversal enables file access
CVE-2026-25640 OpenClaw: path traversal enables arbitrary file read
CVE-2026-25475 n8n: XSS enables session hijacking
CVE-2026-25054 n8n: XSS enables session hijacking
CVE-2026-25051 sagemaker: security flaw enables exploitation
CVE-2026-1778 picklescan: Deserialization enables RCE
GHSA-m7j5-r2p5-c39r llama-index-core: DoS causes service disruption
CVE-2025-6208 agentos-taskweaver: Protection Bypass circumvents security controls
GHSA-gpx9-96j6-pp87 bentoml: Path Traversal enables file access
CVE-2026-24123 chainlit: IDOR enables unauthorized data access
CVE-2025-68492 n8n: security flaw enables exploitation
CVE-2025-68949 BetterDocs: Info Disclosure leaks sensitive data
CVE-2025-14980 n8n: security flaw enables exploitation
CVE-2026-21894 monai: Path Traversal enables file access
CVE-2026-21851 AI component: Missing Auth allows unauthorized operations
CVE-2025-14371 picklescan: Code Injection enables RCE
GHSA-6556-fwc2-fg2p picklescan: Code Injection enables RCE
GHSA-cffc-mxrf-mhh4 n8n: security flaw enables exploitation
CVE-2025-68697 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert