AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,625

AI/ML CVEs Tracked

226

Critical

95

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 1625 results
MEDIUM

anthropic-ai/sdk: memory tool path traversal escape

CVE-2026-34451
--
EPSS 0.1%
Prompt Injection Data Extraction Code Execution Framework Agent API
@anthropic-ai/sdk Patch: 0.81.0 CWE-22 240 6 ATLAS
MEDIUM

anthropic-sdk: insecure file perms expose agent memory

CVE-2026-34450
--
EPSS 0.0%
Data Leakage Model Poisoning Data Extraction Agent Framework API
anthropic Patch: 0.87.0 CWE-276 4.8K 4 ATLAS 17 incidents
UNKNOWN

Claude Setup: DLL search-order hijacking LPE

CVE-2026-22561
--
EPSS 0.0%
Code Execution Supply Chain API Framework
3 ATLAS
CRITICAL EXPLOIT AVAIL

MLflow: command injection via model_uri in mlserver mode

CVE-2026-0596
9.6
EPSS 0.2%
Code Execution Supply Chain Framework Inference
CWE-78 4 ATLAS 1 incident
UNKNOWN

1millionbot Millie: Boolean prompt injection bypasses restrictions

CVE-2026-4399
--
EPSS 0.1%
Prompt Injection Jailbreak API Agent
6 ATLAS 3 incidents
CRITICAL

telnyx: PyPI supply chain attack steals cloud creds

GHSA-955r-262c-33jc
--
Supply Chain Code Execution Data Extraction Framework API Agent
CWE-506 7 ATLAS 2 incidents
HIGH

OpenClaw: .npmrc hijack enables RCE on plugin install

GHSA-m3mh-3mpg-37hw
8.6
Code Execution Supply Chain Framework Plugin Agent
openclaw Patch: 2026.3.24 CWE-426 4 4 ATLAS 3 incidents
MEDIUM

OpenClaw: HTTP scope bypass enables model enumeration

GHSA-68f8-9mhj-h2mp
--
Auth Bypass Data Extraction API Inference
openclaw Patch: 2026.3.24 CWE-284 4 4 ATLAS 2 incidents
HIGH

OpenClaw: sandbox escape via mediaUrl path traversal

GHSA-hr5v-j9h9-xjhg
7.7
Data Extraction Auth Bypass Agent Plugin Framework
openclaw Patch: 2026.3.24 CWE-22 4 5 ATLAS 2 incidents
HIGH EXPLOIT AVAIL

awesome-llm-apps MCP Agent: cross-session credential theft

CVE-2026-29872
8.2
EPSS 0.1%
Data Leakage Auth Bypass Privacy Violation Agent API Plugin
7 ATLAS
UNKNOWN

CrewAI: Docker sandbox fallback enables RCE

CVE-2026-2287
--
EPSS 0.1%
Code Execution Auth Bypass Supply Chain Agent Framework Plugin
5 ATLAS 1 incident
UNKNOWN

CrewAI: SSRF via unvalidated RAG tool URLs exposes internal services

CVE-2026-2286
--
EPSS 0.1%
Data Extraction Auth Bypass Privacy Violation Agent RAG Framework
5 ATLAS
UNKNOWN

CrewAI: arbitrary file read via JSON loader tool

CVE-2026-2285
--
EPSS 0.2%
Data Extraction Data Leakage Prompt Injection Framework Agent Plugin
6 ATLAS
UNKNOWN EXPLOIT AVAIL

CrewAI: RCE via Docker fallback in CodeInterpreter

CVE-2026-2275
--
EPSS 0.0%
Code Execution Auth Bypass Agent Framework Plugin
6 ATLAS 1 incident
CRITICAL EXPLOIT AVAIL

MLflow: RCE via unsanitized model dependency specs

CVE-2025-15379
10.0
EPSS 0.2%
Code Execution Supply Chain Framework
mlflow Patch: 3.8.1 CWE-77 624 4 ATLAS 1 incident
CRITICAL EXPLOIT AVAIL

MLflow: path traversal enables sandbox escape, file overwrite

CVE-2025-15036
9.6
EPSS 0.0%
Supply Chain Code Execution Framework
mlflow Patch: 3.9.0rc0 CWE-29 624 5 ATLAS
MEDIUM

openclaw: webhook rate-limit bypass enables token brute-force

CVE-2026-35646
--
EPSS 0.1%
Auth Bypass Data Extraction Agent Plugin
openclaw Patch: 2026.3.28 CWE-307 4 4 ATLAS 1 incident
MEDIUM

openclaw: unauthenticated webhook parsing enables DoS

CVE-2026-35640
--
EPSS 0.1%
DoS Agent
openclaw Patch: 2026.3.28 CWE-400 4 3 ATLAS
HIGH

openclaw: SSRF in channel extensions hits internal network

CVE-2026-35629
--
EPSS 0.0%
Data Extraction Auth Bypass Supply Chain Agent Plugin
openclaw Patch: 2026.3.28 CWE-918 4 4 ATLAS 1 incident
MEDIUM

openclaw: auth bypass exposes agent session history via HTTP

CVE-2026-35657
--
EPSS 0.0%
Auth Bypass Data Extraction Agent API
openclaw Patch: 2026.3.25 CWE-639 4 3 ATLAS 1 incident

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial