AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
AI/ML CVEs Tracked
Critical
New This Week
In CISA KEV
Latest AI Security Threats
Showing 20 of 199 results — High severity, has patchOpenClaw: QQBot media tags could read arbitrary local files through reply text
GHSA-66r7-m7xm-v49h OpenClaw: busybox and toybox applet execution weakened exec approval binding
GHSA-2cq5-mf3v-mx44 OpenClaw: Matrix profile config persistence was reachable from operator.write message tools
GHSA-7jp6-r74r-995q OpenClaw: Sandboxed agents could escape exec routing via host=node override
GHSA-736r-jwj6-4w23 OpenClaw: Workspace provider auth choices could auto-enable untrusted provider plugins
GHSA-939r-rj45-g2rj OpenClaw: Sandbox browser CDP relay could expose DevTools protocol on 0.0.0.0
GHSA-525j-hqq2-66r4 OpenClaw: Channel setup catalog lookups could include untrusted workspace plugin shadows
GHSA-82qx-6vj7-p8m2 OpenClaw: Exec environment denylist missed high-risk interpreter startup variables
GHSA-vfp4-8x56-j7c5 OpenClaw: Voice-call realtime WebSocket accepted oversized frames
GHSA-vw3h-q6xq-jjm5 OpenClaw: config.get redaction bypass through sourceConfig and runtimeConfig aliases
GHSA-8372-7vhw-cm6q Flowise: Unauthenticated TTS endpoint accepts arbitrary credential IDs — enables API credit abuse via stored credentials
GHSA-5fw2-mwhh-9947 Flowise: Public chatflow endpoints return unsanitized flowData including plaintext API keys, passwords, and credential IDs
GHSA-w47f-j8rh-wx87 Flowise: Mass Assignment in DocumentStore Create Endpoint Leads to Cross-Workspace Object Takeover (IDOR)
GHSA-3prp-9gf7-4rxx Paperclip: RCE via workspace runtime command injection
GHSA-w8hx-hqjv-vjcq Flowise: auth bypass enables account takeover via null token
GHSA-f6hc-c5jr-878p Flowise: Cypher injection allows full Neo4j DB wipe
GHSA-28g4-38q8-3cwc Flowise: HTTP reset link exposes tokens to MITM takeover
GHSA-x5w6-38gp-mrqh Flowise: OAuth token theft via unauthenticated endpoint
GHSA-6f7g-v4pp-r667 FlowiseAI: SSRF via prompt injection in API Chain
GHSA-6r77-hqx7-7vw8 Flowise: SSRF bypass exposes internal services
GHSA-2x8m-83vc-6wv4 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert