AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
AI/ML CVEs Tracked
Critical
New This Week
In CISA KEV
Latest AI Security Threats
Showing 20 of 1092 results — no patchTensorFlow: FPE in AudioSpectrogram causes DoS
CVE-2023-25666 TensorFlow: null ptr deref DoS via sparse tensors
CVE-2023-25665 TensorFlow: heap overflow in AvgPoolGrad, RCE risk
CVE-2023-25664 TensorFlow: null ptr deref crashes inference serving
CVE-2023-25663 TensorFlow: integer overflow in EditDistance causes DoS
CVE-2023-25662 TensorFlow: null ptr deref in Print op allows remote DoS
CVE-2023-25660 TensorFlow: OOB read in DynamicStitch enables DoS
CVE-2023-25659 TensorFlow: OOB read in GRUBlockCellGrad causes DoS
CVE-2023-25658 MLflow: path traversal allows arbitrary file read/write
CVE-2023-1177 MLflow: path traversal exposes arbitrary local files
CVE-2023-1176 Streamlit: reflected XSS enables session hijacking
CVE-2023-27494 Gradio: hardcoded SSH key leaks via share=True demos
CVE-2023-25823 TensorFlow Grappler: OOB read crashes or leaks memory
CVE-2022-41910 TensorFlow Grappler: OOB read/crash via crafted model
CVE-2022-41902 PyTorch: RCE via unsafe eval in JIT annotations
CVE-2022-45907 TensorFlow: type confusion DoS via bool cast in tensors
CVE-2022-41911 TensorFlow: remote DoS via malformed tensor input
CVE-2022-41909 TensorFlow: DoS via invalid UTF-8 input to PyFunc op
CVE-2022-41908 TensorFlow: integer overflow in ResizeNearestNeighborGrad → DoS
CVE-2022-41907 TensorFlow: DoS via SparseMatrixNNZ CHECK assertion fail
CVE-2022-41901 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert