AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

76

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 684 results — High severity
Severity CVE ID Summary CVSS EPSS Package Date
HIGH E CVE-2021-41205 TensorFlow: heap OOB read in quantize ops, DoS+leak 7.1 0.0% tensorflow Nov 5 HIGH E CVE-2021-41203 TensorFlow: malformed checkpoint triggers overflow/crash 7.8 0.0% tensorflow Nov 5 HIGH E CVE-2021-41210 TensorFlow: heap OOB read in SparseCountSparseOutput 7.1 0.0% tensorflow Nov 5 HIGH E CVE-2021-41201 TensorFlow: uninitialized var in Einsum allows local RCE 7.8 0.0% tensorflow Nov 5 HIGH CVE-2021-39160 nbgitpuller: RCE via OS command injection in git URLs 8.8 0.8% Aug 30 HIGH CVE-2021-37682 TFLite: uninitialized quant params corrupt inference 7.1 0.0% tensorflow Aug 12 HIGH CVE-2021-37679 TensorFlow: heap over-read leaks memory via RaggedTensor 7.8 0.0% tensorflow Aug 12 HIGH E CVE-2021-37678 TensorFlow/Keras: RCE via YAML model deserialization 8.8 1.0% tensorflow Aug 12 HIGH CVE-2021-37665 TensorFlow MKL: null-ptr/heap-OOB in requantization ops 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37663 TensorFlow: QuantizeV2 heap OOB/null-deref in quantization 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37681 TensorFlow Lite: null ptr deref crashes SVDF inference 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37676 TensorFlow: null ptr deref in SparseFillEmptyRows op 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37671 TensorFlow: null-ptr deref in Map ops, local C/I/A:High 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37667 TensorFlow: UnicodeEncode null deref, local code exec 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37666 TensorFlow: null-ptr deref in RaggedTensorToVariant op 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37652 TensorFlow: double-free in BoostedTrees, code exec 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37648 TensorFlow SaveV2: null ptr deref, local crash/RCE 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37664 TensorFlow: heap OOB read in BoostedTrees ops 7.1 0.0% tensorflow Aug 12 HIGH CVE-2021-37662 TensorFlow: null deref in BoostedTrees training ops 7.8 0.1% tensorflow Aug 12 HIGH CVE-2021-37659 TensorFlow: heap OOB in cwise ops enables local RCE 7.8 0.0% tensorflow Aug 12

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial