AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
AI/ML CVEs Tracked
Critical
New This Week
In CISA KEV
Latest AI Security Threats
Showing 20 of 512 results — has patchllama-index Obsidian reader: hardlink path traversal leaks files
CVE-2025-6210 LlamaIndex Obsidian: symlink traversal exposes host files
CVE-2025-3046 llama-index ArxivReader: MD5 collision corrupts training data
CVE-2025-3044 llama-index Papers Loader: XML expansion DoS
CVE-2025-3225 llama-index: RCE via unsafe pickle deserialization
CVE-2025-3108 MLflow: unauthenticated SSRF in gateway proxy
CVE-2025-52967 llama_index: SQL injection in vector store integrations
CVE-2025-1793 vllm: ReDoS in inference endpoints enables DoS
GHSA-j828-28rj-hfhp Label Studio: XSS enables unauthorized actions via CSRF
CVE-2025-47783 llama_index: DoS via uncapped recursion in web reader
CVE-2025-1752 browser-use: URL allowlist bypass enables SSRF in agents
CVE-2025-47241 LLaMA-Factory: RCE via torch.load() unsafe deserialization
CVE-2025-46567 vLLM: RCE via malicious model, PyTorch < 2.6 bypass
GHSA-ggpf-24jw-3fcw vLLM: DoS via unbounded XGrammar schema cache
GHSA-hf3c-wxg2-49q9 jupyter-remote-desktop-proxy: VNC network exposure
CVE-2025-32428 xgrammar: unbounded grammar cache causes LLM server DoS
CVE-2025-32381 picklescan: bypass allows silent RCE in ML pipelines
GHSA-v7x6-rv5q-mhwc picklescan: numpy bypass enables RCE in ML model pipelines
GHSA-fj43-3qmq-673f picklescan: scanner bypass enables DNS data exfiltration
CVE-2025-46417 litellm: privilege escalation viewer→proxy admin via bad API key
CVE-2025-0628 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert