AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
AI/ML CVEs Tracked
Critical
New This Week
In CISA KEV
Latest AI Security Threats
Showing 20 of 485 results — High severity, no patchlangsmith: security flaw enables exploitation
CVE-2026-25750 A vulnerability in NLTK versions up to and including 3.9.2 allows arbitrary file read via path traversal in multiple CorpusReader classes, including...
CVE-2026-0847 bentoml: security flaw enables exploitation
CVE-2026-27905 gradio: SSRF allows internal network access
CVE-2026-28416 gradio: security flaw enables exploitation
CVE-2026-28414 n8n: Code Injection enables RCE
CVE-2026-27498 n8n: SQL Injection exposes database
CVE-2026-27497 google-cloud-aiplatform: XSS enables session hijacking
CVE-2026-2472 OpenClaw: prompt injection via unsanitized workspace path
CVE-2026-27001 OpenClaw: path traversal enables local file exfiltration
CVE-2026-26321 sillytavern: SSRF allows internal network access
CVE-2026-26286 keras: File Control enables path manipulation
CVE-2026-1669 n8n: Input Validation flaw enables exploitation
CVE-2026-21893 n8n: Arbitrary File Upload enables RCE
CVE-2026-25056 n8n: Path Traversal enables file access
CVE-2026-25055 n8n: Info Disclosure leaks sensitive data
CVE-2025-61917 text-generation: DoS causes service disruption
CVE-2026-0599 agpt: Code Injection enables RCE
CVE-2026-24780 vllm: SSRF allows internal network access
CVE-2026-24779 pytorch: Code Injection enables RCE
CVE-2026-24747 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert