AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

76

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 684 results — High severity
Severity CVE ID Summary CVSS EPSS Package Date
HIGH E CVE-2022-21727 TensorFlow: Dequantize integer overflow, RCE risk 8.8 0.3% tensorflow Feb 3 HIGH E CVE-2022-21726 TensorFlow: heap OOB read in Dequantize op allows RCE 8.8 0.3% tensorflow Feb 3 HIGH E CVE-2021-4118 pytorch-lightning: deserialization RCE via malicious checkpoint 7.8 0.3% pytorch_lightning Dec 23 HIGH E CVE-2021-43831 Gradio: path traversal exposes host filesystem to users 7.7 30.3% gradio Dec 15 HIGH E CVE-2021-43811 Sockeye: unsafe YAML load RCE via model config file 7.8 8.7% Dec 8 HIGH CVE-2021-41134 nbdime: stored XSS in Jupyter notebook diff viewer 8.7 0.3% Nov 8 HIGH E CVE-2021-41228 TensorFlow: eval() in saved_model_cli allows RCE 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41225 TensorFlow Grappler: uninitialized var, local priv-esc 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41221 TensorFlow: CuDNN heap overflow, local code execution 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41220 TensorFlow: use-after-free in async collective ops 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41216 TensorFlow: heap overflow in Transpose via negative perm 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41208 TensorFlow: heap R/W + DoS in boosted trees APIs 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41206 TensorFlow: missing shape validation allows heap R/W 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41226 TensorFlow: heap OOB in SparseBinCount, crash/disclosure 7.1 0.0% tensorflow Nov 5 HIGH E CVE-2021-41224 TensorFlow: heap OOB read in SparseFillEmptyRows op 7.1 0.0% tensorflow Nov 5 HIGH E CVE-2021-41223 TensorFlow: FusedBatchNorm heap OOB allows data leak/crash 7.1 0.0% tensorflow Nov 5 HIGH E CVE-2021-41219 TensorFlow: heap OOB in sparse matrix multiply 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41214 TensorFlow: null deref in ragged ops, local RCE 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41212 TensorFlow: heap OOB read in ragged.cross shape inference 7.1 0.0% tensorflow Nov 5 HIGH E CVE-2021-41211 TensorFlow: heap OOB read in QuantizeV2 shape inference 7.1 0.0% tensorflow Nov 5

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial