AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
1,604
AI/ML CVEs Tracked
225
Critical
76
New This Week
16
In CISA KEV
Latest AI Security Threats
Showing 20 of 1604 results Severity CVE ID Summary CVSS EPSS Package Date
HIGH E CVE-2025-10156 Picklescan: CRC bypass hides malicious pickle in ZIP 7.5 1.0% picklescan Sep 10 HIGH E CVE-2025-10157 PickleScan: subclass bypass enables malicious model RCE 8.3 0.2% picklescan Sep 10 HIGH E CVE-2025-58757 MONAI: unsafe pickle deserialization RCE in data pipeline 8.8 0.8% monai Sep 9 HIGH E CVE-2025-58756 MONAI: unsafe deserialization in CheckpointLoader allows RCE 8.8 1.7% monai Sep 9 HIGH E CVE-2025-58755 MONAI: path traversal allows arbitrary file write 8.8 0.1% monai Sep 9 HIGH E CVE-2025-56265 n8n: unrestricted file upload RCE via Chat Trigger 8.8 0.1% n8n Sep 8 MEDI E CVE-2025-58446 xgrammar: DoS via oversized JSON schema grammar parsing — 0.1% xgrammar Sep 5 HIGH E CVE-2025-6984 EverNoteLoader: XXE exposes host files in LangChain 7.5 1.9% langchain-community Sep 4 MEDI GHSA-q77w-mwjj-7mqx picklescan: scanner bypass enables model RCE — — picklescan Aug 26 MEDI GHSA-49gj-c84q-6qm9 picklescan: scanner bypass enables RCE via ML model files — — picklescan Aug 26 MEDI GHSA-9w88-8rmg-7g2p picklescan: scan bypass allows silent RCE via ML models — — picklescan Aug 26 MEDI GHSA-fqq6-7vqf-w3fg picklescan: detection bypass allows undetected RCE in ML models — — picklescan Aug 26 MEDI GHSA-3gf5-cxq9-w223 picklescan: scanner bypass enables pickle RCE in ML models — — picklescan Aug 26 MEDI GHSA-j343-8v2j-ff7w picklescan: scanner bypass allows pickle-based RCE — — picklescan Aug 26 MEDI GHSA-m869-42cg-3xwr picklescan: scanner bypass enables RCE via ML models — — picklescan Aug 26 MEDI GHSA-p9w7-82w4-7q8m picklescan: detection bypass allows pickle RCE in ML pipelines — — picklescan Aug 26 MEDI GHSA-xp4f-hrf8-rxw7 picklescan: scanner bypass leads to undetected RCE — — picklescan Aug 26 MEDI GHSA-4whj-rm5r-c2v8 picklescan: scanner bypass enables PyTorch gadget RCE — — picklescan Aug 26 MEDI GHSA-9xph-j2h6-g47v picklescan: scanner bypass enables RCE via model files — — picklescan Aug 26 MEDI GHSA-8r4j-24qv-fmq9 picklescan: RCE bypass enables ML supply chain attack — — picklescan Aug 26 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert