AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

79

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 570 results — Medium severity
MEDIUM

TensorFlow: heap OOB read in SdcaOptimizerV2

CVE-2021-37672
5.5
EPSS 0.0%
Data Extraction Privacy Violation Framework Training Data
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: heap OOB read in sorting ops

CVE-2021-37670
5.5
EPSS 0.1%
Data Extraction Supply Chain Framework Training Data
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: integer conversion DoS in NonMaxSuppression ops

CVE-2021-37669
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: DoS via div-by-zero in UnravelIndex op

CVE-2021-37668
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow CWE-369 3.7K 3 ATLAS
MEDIUM

TensorFlow Lite: MLIR null ptr deref crashes inference

CVE-2021-37689
5.5
EPSS 0.0%
DoS Supply Chain Framework Inference
tensorflow 3.7K 4 ATLAS
MEDIUM

TensorFlow Lite: DoS via crafted TFLite model file

CVE-2021-37688
5.5
EPSS 0.0%
DoS Supply Chain Framework Inference Model
tensorflow 3.7K 3 ATLAS
MEDIUM

TFLite: infinite loop DoS via crafted strided slice model

CVE-2021-37686
5.5
EPSS 0.0%
DoS Supply Chain Framework Inference
tensorflow CWE-835 3.7K 4 ATLAS
MEDIUM

TFLite: division by zero crashes fully connected layers

CVE-2021-37680
5.5
EPSS 0.0%
DoS Supply Chain Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM EXPLOIT AVAIL

TensorFlow: DoS via division by zero in conv ops

CVE-2021-37675
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: integer sign conversion DoS in boosted trees

CVE-2021-37661
5.5
EPSS 0.0%
DoS Framework
tensorflow CWE-681 3.7K 3 ATLAS
MEDIUM

TensorFlow: StringNGrams integer overflow triggers DoS

CVE-2021-37646
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: integer overflow in quantize grad causes DoS

CVE-2021-37645
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: DoS via negative TensorListReserve input

CVE-2021-37644
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: null ptr deref crashes inference via bad tensor

CVE-2021-37649
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: null deref in SparseTensor ops causes DoS

CVE-2021-37647
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: null ptr dereference in CompressElement (DoS)

CVE-2021-37637
5.5
EPSS 0.0%
DoS Framework Training Data
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: DoS via divide-by-zero in inplace ops

CVE-2021-37660
5.5
EPSS 0.0%
DoS Framework
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: DoS via divide-by-zero in ResourceGather op

CVE-2021-37653
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: ResourceScatterDiv div-by-zero enables DoS

CVE-2021-37642
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS
MEDIUM

TensorFlow: SparseReshape div-by-zero crashes ML pipelines

CVE-2021-37640
5.5
EPSS 0.0%
DoS Framework Inference
tensorflow 3.7K 3 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial