AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
AI/ML CVEs Tracked
Critical
New This Week
In CISA KEV
Latest AI Security Threats
Showing 20 of 684 results — High severityTensorFlow: heap OOB read in quantize ops, DoS+leak
CVE-2021-41205 TensorFlow: malformed checkpoint triggers overflow/crash
CVE-2021-41203 TensorFlow: heap OOB read in SparseCountSparseOutput
CVE-2021-41210 TensorFlow: uninitialized var in Einsum allows local RCE
CVE-2021-41201 nbgitpuller: RCE via OS command injection in git URLs
CVE-2021-39160 TFLite: uninitialized quant params corrupt inference
CVE-2021-37682 TensorFlow: heap over-read leaks memory via RaggedTensor
CVE-2021-37679 TensorFlow/Keras: RCE via YAML model deserialization
CVE-2021-37678 TensorFlow MKL: null-ptr/heap-OOB in requantization ops
CVE-2021-37665 TensorFlow: QuantizeV2 heap OOB/null-deref in quantization
CVE-2021-37663 TensorFlow Lite: null ptr deref crashes SVDF inference
CVE-2021-37681 TensorFlow: null ptr deref in SparseFillEmptyRows op
CVE-2021-37676 TensorFlow: null-ptr deref in Map ops, local C/I/A:High
CVE-2021-37671 TensorFlow: UnicodeEncode null deref, local code exec
CVE-2021-37667 TensorFlow: null-ptr deref in RaggedTensorToVariant op
CVE-2021-37666 TensorFlow: double-free in BoostedTrees, code exec
CVE-2021-37652 TensorFlow SaveV2: null ptr deref, local crash/RCE
CVE-2021-37648 TensorFlow: heap OOB read in BoostedTrees ops
CVE-2021-37664 TensorFlow: null deref in BoostedTrees training ops
CVE-2021-37662 TensorFlow: heap OOB in cwise ops enables local RCE
CVE-2021-37659 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert