AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

79

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 570 results — Medium severity
MEDIUM EXPLOIT AVAIL

TensorFlow: NULL deref DoS via compat.v1 ops

CVE-2022-29205
5.5
EPSS 0.1%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via UnsortedSegmentJoin input validation

CVE-2022-29204
5.5
EPSS 0.1%
DoS Framework
tensorflow CWE-20 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via SpaceToBatchND integer overflow

CVE-2022-29203
5.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via ragged tensor memory exhaustion

CVE-2022-29202
5.5
EPSS 0.1%
DoS Framework
tensorflow CWE-1284 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: QuantizedConv2D null deref crashes model server

CVE-2022-29201
5.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: null-ptr deref in eager mode causes DoS

CVE-2022-29207
5.5
EPSS 0.1%
DoS Framework Training Data Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: LSTMBlockCell DoS via invalid tensor rank

CVE-2022-29200
5.5
EPSS 0.1%
DoS Framework Inference
tensorflow CWE-1284 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: CHECK-fail DoS in LoadAndRemapMatrix op

CVE-2022-29199
5.5
EPSS 0.1%
DoS Framework
tensorflow 3.7K 2 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via sparse tensor input validation failure

CVE-2022-29198
5.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via UnsortedSegmentJoin input validation

CVE-2022-29197
5.5
EPSS 0.1%
DoS Framework
tensorflow CWE-20 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via invalid Conv3D filter input

CVE-2022-29196
5.5
EPSS 0.1%
DoS Framework
tensorflow CWE-1284 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: StagePeek DoS via unvalidated index scalar

CVE-2022-29195
5.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via TensorSummaryV2 input validation failure

CVE-2022-29193
5.5
EPSS 0.1%
DoS Framework Training Data
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via malformed DeleteSessionTensor input

CVE-2022-29194
5.5
EPSS 0.1%
DoS Framework Inference
tensorflow 3.7K 2 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via QuantizeAndDequantize input validation

CVE-2022-29192
5.5
EPSS 0.1%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via GetSessionTensor input validation

CVE-2022-29191
5.5
EPSS 0.1%
DoS Framework
tensorflow 3.7K 2 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow XLA: null pointer dereference causes DoS

CVE-2022-23595
6.5
EPSS 0.2%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow MLIR: heap OOB via malicious SavedModel file

CVE-2022-23594
5.5
EPSS 0.0%
Code Execution DoS Supply Chain Framework Model
tensorflow CWE-125 3.7K 4 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow Grappler: DoS via malicious SavedModel

CVE-2022-23589
6.5
EPSS 0.3%
DoS Supply Chain Framework Model
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via crafted SavedModel crashes Grappler

CVE-2022-23588
6.5
EPSS 0.3%
DoS Supply Chain Framework Model Inference
tensorflow 3.7K 4 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial