AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

78

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 512 results — has patch
MEDIUM

openclaw: local file exfiltration via trusted MEDIA refs

GHSA-qqq7-4hxc-x63c
--
Data Extraction Privacy Violation Agent Plugin
openclaw Patch: 2026.4.8 CWE-668 4 4 ATLAS 1 incident
MEDIUM

OpenClaw: eval approval bypass enables unintended code exec

GHSA-q2gc-xjqw-qp89
--
Auth Bypass Code Execution Agent Framework
openclaw Patch: 2026.4.8 CWE-20 4 5 ATLAS 1 incident
HIGH

OpenClaw: env var injection enables host RCE

GHSA-7437-7hg8-frrw
--
Code Execution Supply Chain Agent Plugin
openclaw Patch: 2026.4.8 CWE-184 4 5 ATLAS 1 incident
HIGH

OpenClaw: wake hook trust violation elevates to System prompt

GHSA-jf56-mccx-5f3f
--
Prompt Injection Auth Bypass Agent Plugin
openclaw Patch: 2026.4.8 CWE-501 4 6 ATLAS 1 incident
HIGH

openclaw: trust boundary bypass enables prompt injection

GHSA-gfmx-pph7-g46x
--
Prompt Injection Auth Bypass Agent Plugin
openclaw Patch: 2026.4.8 CWE-501 4 5 ATLAS 1 incident
CRITICAL

PraisonAI: RCE via shell injection in agent workflows

GHSA-2763-cj5r-c79m
9.7
Code Execution Prompt Injection Supply Chain Agent Framework
PraisonAI Patch: 4.5.121 CWE-78 1 6 ATLAS
MEDIUM

LangChain: f-string template injection exposes object internals

GHSA-926x-3r5x-gfhw
5.3
Data Extraction Prompt Injection Framework
langchain-core Patch: 0.3.84 CWE-20 4.4K 4 ATLAS
CRITICAL

Marimo: pre-auth RCE via terminal WebSocket

GHSA-2679-6mx9-h9xc
--
Auth Bypass Code Execution Framework
marimo Patch: 0.23.0 CWE-306 2.9K 5 ATLAS
HIGH

n8n-mcp: authenticated SSRF leaks cloud metadata

GHSA-4ggg-h7ph-26qr
8.5
Data Extraction Auth Bypass Privacy Violation Agent Framework Plugin
n8n-mcp Patch: 2.47.4 CWE-918 16 5 ATLAS
MEDIUM

praisonaiagents: agent context leak + path traversal

GHSA-766v-q9x3-g744
6.5
Data Leakage Data Extraction Agent Framework
praisonaiagents Patch: 1.5.115 CWE-22 11 4 ATLAS
HIGH EXPLOIT AVAIL

praisonai: SSTI enables RCE via agent instructions

CVE-2026-39891
8.8
EPSS 0.0%
Code Execution Prompt Injection Data Extraction Agent Framework Plugin
praisonai Patch: 4.5.115 CWE-94 1 5 ATLAS
HIGH

PraisonAI: unauth A2U stream leaks all agent activity

CVE-2026-39889
7.5
EPSS 0.0%
Auth Bypass Data Leakage Data Extraction Agent Framework
praisonai Patch: 4.5.115 CWE-200 1 5 ATLAS
CRITICAL

praisonaiagents: sandbox escape enables host RCE

CVE-2026-39888
10.0
EPSS 0.1%
Code Execution Auth Bypass Agent Framework
praisonaiagents Patch: 1.5.115 CWE-657 11 5 ATLAS
CRITICAL EXPLOIT AVAIL

PraisonAI: YAML deserialization enables unauthenticated RCE

CVE-2026-39890
9.8
EPSS 0.5%
Code Execution Supply Chain Agent Framework
praisonai Patch: 4.5.115 CWE-502 1 5 ATLAS
MEDIUM EXPLOIT AVAIL

LobeChat: auth bypass via forged XOR obfuscated header

CVE-2026-39411
5.0
EPSS 0.0%
Auth Bypass Data Extraction DoS API Inference
@lobehub/lobehub Patch: 2.1.48 CWE-287 3.7K 5 ATLAS
HIGH

LiteLLM: auth bypass chain enables full privilege escalation

GHSA-69x8-hrgq-fjj8
--
Auth Bypass Data Extraction Privacy Violation API Inference Framework
litellm Patch: 1.83.0 CWE-200 4 5 ATLAS
HIGH

MONAI: pickle deserialization RCE in Auto3DSeg

GHSA-89gg-p5r5-q6r4
7.7
Code Execution Supply Chain Framework Training Data
monai Patch: 1.5.2 CWE-502 105 4 ATLAS
MEDIUM

OpenClaw: cleartext WebSocket exposes gateway credentials

GHSA-83f3-hh45-vfw9
--
Data Leakage Auth Bypass Agent
openclaw Patch: 2026.4.2 CWE-200 4 3 ATLAS 1 incident
MEDIUM

openclaw: timing side-channel leaks shared-secret length

GHSA-jj6q-rrrf-h66h
--
Auth Bypass Data Extraction Agent Framework
openclaw Patch: 2026.4.2 CWE-208 4 3 ATLAS 1 incident
MEDIUM

OpenClaw: Zalo webhook dedup collision silently drops events

GHSA-rxmx-g7hr-8mx4
--
DoS Agent API
openclaw Patch: 2026.4.2 CWE-349 4 2 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial