AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

76

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 1092 results — no patch
Severity CVE ID Summary CVSS EPSS Package Date
HIGH CVE-2023-30172 MLflow: path traversal exposes arbitrary server files 7.5 0.4% mlflow May 11 HIGH E CVE-2023-27564 n8n: unauthenticated info disclosure exposes credentials 7.5 3.9% n8n May 10 HIGH E CVE-2023-27563 n8n: privilege escalation exposes full workflow admin 8.8 0.3% n8n May 10 MEDI E CVE-2023-27562 n8n: path traversal allows arbitrary file read 6.5 1.1% n8n May 10 MEDI E CVE-2023-1651 AI ChatBot WP: auth bypass exposes OpenAI config + XSS 5.4 0.2% wpbot May 8 HIGH E CVE-2023-2356 MLflow: path traversal allows unauthenticated file read 7.5 90.5% mlflow Apr 28 CRIT E CVE-2023-29374 LangChain: RCE via prompt injection in LLMMathChain 9.8 3.8% langchain Apr 5 MEDI E CVE-2023-25661 TensorFlow: DoS via malformed Convolution3D input 6.5 0.2% tensorflow Mar 27 HIGH CVE-2023-27579 TensorFlow Lite: FPE in tflite model crashes inference runtime 7.5 0.2% tensorflow Mar 25 HIGH E CVE-2023-25801 TensorFlow: double-free in pooling ops enables RCE 7.8 0.1% tensorflow Mar 25 HIGH CVE-2023-25676 TensorFlow: NULL ptr deref DoS in ParallelConcat op 7.5 0.2% tensorflow Mar 25 HIGH CVE-2023-25675 TensorFlow XLA: Bincount shape mismatch causes DoS 7.5 0.2% tensorflow Mar 25 HIGH E CVE-2023-25674 TensorFlow: null pointer DoS in RandomShuffle (XLA) 7.5 0.4% tensorflow Mar 25 HIGH CVE-2023-25673 TensorFlow: FPE in TensorListSplit (XLA) remote DoS 7.5 0.3% tensorflow Mar 25 HIGH CVE-2023-25672 TensorFlow: NPE in LookupTableImportV2 causes DoS 7.5 0.1% tensorflow Mar 25 HIGH CVE-2023-25671 TensorFlow: OOB write DoS via integer type mismatch 7.5 0.3% tensorflow Mar 25 HIGH CVE-2023-25670 TensorFlow: null ptr DoS in quantized MKL MatMul 7.5 0.2% tensorflow Mar 25 HIGH CVE-2023-25669 TensorFlow: DoS via AvgPoolGrad invalid stride params 7.5 0.2% tensorflow Mar 25 CRIT E CVE-2023-25668 TensorFlow: unauthenticated RCE via heap buffer overflow 9.8 1.5% tensorflow Mar 25 HIGH E CVE-2023-25667 TensorFlow: integer overflow DoS in video frame decoding 7.5 0.2% tensorflow Mar 25

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial