AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

77

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 512 results — has patch
UNKNOWN

@anthropic-ai/sdk: insecure file perms expose agent memory

CVE-2026-41686
--
EPSS 0.0%
Data Leakage Privacy Violation Prompt Injection Agent API Framework
@anthropic-ai/sdk Patch: 0.91.1 CWE-732 240 5 ATLAS
HIGH EXPLOIT AVAIL

marked: infinite recursion DoS crashes Node.js via OOM

CVE-2026-41680
7.5
EPSS 0.1%
DoS Framework
marked Patch: 18.0.2 CWE-400 3.8K 4 ATLAS
MEDIUM

openclaw: path traversal exposes host files via audio embed

GHSA-gfg9-5357-hv4c
--
Prompt Injection Data Extraction Agent Plugin
openclaw Patch: 2026.4.15 CWE-22 4 5 ATLAS 1 incident
MEDIUM

openclaw: auth bypass in owner command enforcement

GHSA-c28g-vh7m-fm7v
--
Auth Bypass Agent Plugin
openclaw Patch: 2026.4.21 CWE-862 4 5 ATLAS 1 incident
UNKNOWN

n8n: XML Node prototype pollution → RCE

CVE-2026-42232
--
EPSS 0.1%
Code Execution Data Extraction Agent Plugin Framework
n8n Patch: 2.18.1 CWE-1321 16 5 ATLAS
UNKNOWN

n8n: prototype pollution → RCE via Git node SSH

CVE-2026-42231
--
EPSS 0.3%
Code Execution Supply Chain Agent Plugin
n8n Patch: 1.123.32 CWE-1321 16 6 ATLAS
UNKNOWN

n8n: stored XSS via MCP OAuth steals agent sessions

CVE-2026-42235
--
EPSS 0.1%
Code Execution Data Extraction Auth Bypass Agent Plugin Framework
n8n Patch: 1.123.32 CWE-87 16 7 ATLAS
UNKNOWN

n8n: IDOR exposes cross-user API key exfiltration

CVE-2026-42226
--
EPSS 0.1%
Auth Bypass Data Extraction Privacy Violation Agent API Framework
n8n Patch: 2.17.5 CWE-862 16 6 ATLAS
UNKNOWN

n8n: Python sandbox escape enables container RCE

CVE-2026-42234
--
EPSS 0.1%
Code Execution Supply Chain Data Extraction Agent Framework Plugin
n8n Patch: 1.123.32 CWE-94 16 5 ATLAS
UNKNOWN

n8n: IDOR leaks cross-project variables via API key

CVE-2026-42227
--
EPSS 0.0%
Auth Bypass Data Extraction Agent API
n8n Patch: 1.123.32 CWE-639 16 4 ATLAS
UNKNOWN

n8n: unauthenticated MCP endpoint causes memory DoS

CVE-2026-42236
--
EPSS 0.1%
DoS Agent Framework
n8n Patch: 1.123.32 CWE-770 16 3 ATLAS
UNKNOWN

n8n: WebSocket auth bypass hijacks AI agent workflows

CVE-2026-42228
--
EPSS 0.1%
Auth Bypass Data Extraction Prompt Injection Agent Framework Plugin
n8n Patch: 1.123.32 CWE-862 16 5 ATLAS
UNKNOWN

n8n: SQL injection in SeaTable node leaks restricted rows

CVE-2026-42229
--
EPSS 0.0%
Data Extraction Auth Bypass Agent Plugin
n8n Patch: 1.123.32 CWE-89 16 4 ATLAS
UNKNOWN

n8n: MCP OAuth open redirect enables phishing

CVE-2026-42230
--
EPSS 0.0%
Social Engineering Auth Bypass Agent API
n8n Patch: 1.123.32 CWE-601 16 4 ATLAS
UNKNOWN

n8n: SQL injection in Oracle node allows data exfiltration

CVE-2026-42233
--
EPSS 0.0%
Data Extraction Code Execution Agent Framework
n8n Patch: 1.123.32 CWE-20 16 4 ATLAS
UNKNOWN

n8n: SQL injection in Snowflake/MySQL nodes bypasses fix

CVE-2026-42237
--
EPSS 0.0%
Code Execution Data Extraction Agent Plugin
n8n Patch: 1.123.32 CWE-89 16 4 ATLAS
MEDIUM EXPLOIT AVAIL

vllm: uninitialized KV cache memory leaks inference data

CVE-2026-7141
5.6
EPSS 0.1%
Data Leakage DoS Inference Framework
vllm Patch: 0.19.1 CWE-908 127 4 ATLAS
MEDIUM

openclaw: config guard bypass, persistent settings mutation

GHSA-7jm2-g593-4qrc
--
Prompt Injection Auth Bypass Agent Framework Plugin
openclaw Patch: 2026.4.20 CWE-285 4 4 ATLAS 1 incident
MEDIUM

openclaw: tool policy bypass via bundled MCP/LSP tools

GHSA-qrp5-gfw2-gxv4
--
Auth Bypass Code Execution Agent Plugin
openclaw Patch: 2026.4.20 CWE-862 4 4 ATLAS 1 incident
MEDIUM

OpenClaw: env injection exposes MiniMax API key

GHSA-h2vw-ph2c-jvwf
--
Data Extraction Supply Chain Auth Bypass Agent API
openclaw Patch: 2026.4.20 CWE-15 4 4 ATLAS 1 incident

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial