AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,625

AI/ML CVEs Tracked

226

Critical

87

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 1625 results
HIGH EXPLOIT AVAIL

LiteLLM: RCE via bytecode rewriting in guardrails API

CVE-2026-40217
8.8
EPSS 0.2%
Code Execution Data Extraction Inference Framework API
litellm Patch: 1.83.10 CWE-420 4 4 ATLAS
CRITICAL EXPLOIT AVAIL

lollms: Stored XSS enables wormable account takeover

CVE-2026-1115
9.6
EPSS 0.0%
Code Execution Auth Bypass Data Extraction Framework API
lollms Patch: 2.2.0 CWE-79 5 ATLAS
MEDIUM EXPLOIT AVAIL

OpenClaw: SSRF via web-fetch enables internal network pivot

CVE-2026-6011
5.6
EPSS 0.1%
Data Extraction Privacy Violation Agent Plugin
openclaw Patch: 2026.1.29 CWE-918 4 4 ATLAS 1 incident
HIGH EXPLOIT AVAIL

PraisonAIAgents: SSRF exposes cloud metadata via web_crawl

CVE-2026-40150
7.7
EPSS 0.0%
Data Extraction Prompt Injection Privacy Violation Agent Plugin
praisonaiagents Patch: 1.5.128 CWE-918 11 5 ATLAS
MEDIUM EXPLOIT AVAIL

PraisonAI: arbitrary file read via unguarded skill tool

CVE-2026-40117
6.2
EPSS 0.0%
Prompt Injection Data Extraction Data Leakage Agent Plugin
praisonaiagents Patch: 1.5.128 CWE-862 11 5 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: unauth WebSocket drains OpenAI API credits

CVE-2026-40116
7.5
EPSS 0.1%
Auth Bypass DoS Agent API
praisonai CWE-770 1 5 ATLAS
HIGH EXPLOIT AVAIL

PraisonAI: arg injection injects env vars into Cloud Run

CVE-2026-40113
8.4
EPSS 0.0%
Code Execution Supply Chain Auth Bypass Agent Framework
praisonai CWE-88 1 4 ATLAS
MEDIUM EXPLOIT AVAIL

PraisonAI: XSS via no-op HTML sanitizer in agent output

CVE-2026-40112
5.4
EPSS 0.0%
Prompt Injection Code Execution Data Extraction Agent Framework RAG
praisonai CWE-79 1 4 ATLAS
CRITICAL EXPLOIT AVAIL

PraisonAI: RCE via shell injection in memory hooks executor

CVE-2026-40111
--
EPSS 0.0%
Code Execution Prompt Injection Agent Framework
praisonaiagents Patch: 1.5.128 CWE-78 11 5 ATLAS
LOW

openclaw: git env var injection enables host redirect

GHSA-cm8v-2vh9-cxf3
--
Code Execution Data Extraction Agent Plugin
openclaw Patch: 2026.4.8 CWE-78 4 5 ATLAS 1 incident
MEDIUM

LangChain: template injection leaks object attributes

CVE-2026-40087
5.3
EPSS 0.1%
Prompt Injection Data Extraction Framework
langchain-core CWE-1336 4.4K 3 ATLAS
MEDIUM

openclaw: base64 pre-alloc bypass causes resource exhaustion

GHSA-ccx3-fw7q-rr2r
--
DoS Supply Chain Agent Plugin
openclaw Patch: 2026.4.8 CWE-770 4 4 ATLAS 1 incident
MEDIUM

openclaw: no integrity check on ClawHub plugin installs

GHSA-3vvq-q2qc-7rmp
--
Supply Chain Code Execution Agent Plugin
openclaw Patch: 2026.4.8 CWE-353 4 4 ATLAS 1 incident
HIGH

OpenClaw: unsafe body replay on cross-origin redirect

GHSA-qx8j-g322-qj6m
--
Data Extraction Auth Bypass Supply Chain Agent Plugin
openclaw Patch: 2026.4.8 CWE-345 4 5 ATLAS 1 incident
MEDIUM

openclaw: env var injection enables host exec hijacking

GHSA-w9j9-w4cp-6wgr
--
Code Execution Supply Chain Agent Plugin
openclaw Patch: 2026.4.8 CWE-78 4 6 ATLAS 1 incident
MEDIUM

OpenClaw: SSRF bypass via Playwright redirect handling

GHSA-w8g9-x8gx-crmm
--
Supply Chain Auth Bypass Data Extraction Agent Plugin
openclaw Patch: 2026.4.8 CWE-918 4 7 ATLAS 1 incident
LOW

OpenClaw: gateway auth expands read to write privilege

GHSA-4f8g-77mw-3rxc
--
Auth Bypass Supply Chain Agent Plugin
openclaw Patch: 2026.4.8 CWE-269 4 4 ATLAS 1 incident
MEDIUM

OpenClaw: SSRF bypass via interaction-triggered navigation

GHSA-vr5g-mmx7-h897
--
Auth Bypass Data Extraction Agent Plugin
openclaw Patch: 2026.4.8 CWE-918 4 7 ATLAS 1 incident
MEDIUM

OpenClaw: scope misconfiguration enables unauthorized node pairing

GHSA-67mf-f936-ppxf
--
Auth Bypass Supply Chain Agent Plugin
openclaw Patch: 2026.4.8 CWE-269 4 5 ATLAS 1 incident
LOW

OpenClaw: local file read bypasses workspace policy

GHSA-5fc7-f62m-8983
--
Data Extraction Privacy Violation Auth Bypass Agent Plugin
openclaw Patch: 2026.4.8 CWE-732 4 4 ATLAS 1 incident

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial