AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

76

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 1604 results
HIGH EXPLOIT AVAIL

LlamaIndex Obsidian: symlink traversal exposes host files

CVE-2025-3046
7.5
EPSS 0.5%
Data Extraction Data Leakage Framework RAG
llama-index-readers-obsidian Patch: 0.5.1 CWE-22 229 4 ATLAS
MEDIUM EXPLOIT AVAIL

llama-index ArxivReader: MD5 collision corrupts training data

CVE-2025-3044
5.3
EPSS 0.2%
Supply Chain Model Poisoning Data Leakage Framework Training Data RAG
llama-index-readers-papers Patch: 0.3.1 CWE-440 229 5 ATLAS
HIGH EXPLOIT AVAIL

llama-index Papers Loader: XML expansion DoS

CVE-2025-3225
7.5
EPSS 0.3%
DoS Supply Chain Framework RAG
llama-index-readers-papers Patch: 0.3.2 CWE-776 229 3 ATLAS
LOW EXPLOIT AVAIL

Transformers: URL validation bypass exposes image pipeline

CVE-2025-3777
3.5
EPSS 0.1%
Data Leakage Social Engineering Framework
transformers CWE-20 7.9K 4 ATLAS
MEDIUM EXPLOIT AVAIL

Transformers: ReDoS in dynamic module loader causes DoS

CVE-2025-3264
5.3
EPSS 0.1%
DoS Supply Chain Framework Model
transformers CWE-1333 7.9K 4 ATLAS
MEDIUM EXPLOIT AVAIL

Transformers: ReDoS in config loader causes serving DoS

CVE-2025-3263
5.3
EPSS 0.1%
DoS Framework
transformers CWE-1333 7.9K 4 ATLAS
HIGH EXPLOIT AVAIL

Transformers: ReDoS in chat.py causes CPU exhaustion

CVE-2025-3262
7.5
EPSS 0.3%
DoS Framework
transformers CWE-1333 7.9K 3 ATLAS
MEDIUM EXPLOIT AVAIL

llama-index: RCE via unsafe pickle deserialization

CVE-2025-3108
5.0
EPSS 1.9%
Code Execution Supply Chain Framework RAG Agent
llama-index-core Patch: 0.12.41 CWE-1112 1.1K 4 ATLAS
MEDIUM

n8n: broken authz enables cross-user workflow termination

CVE-2025-52554
4.3
EPSS 0.3%
Auth Bypass DoS Agent Framework
n8n 16 4 ATLAS
MEDIUM EXPLOIT AVAIL

LiteLLM: SQL injection in key management API

CVE-2025-45809
5.4
EPSS 0.2%
Data Extraction Auth Bypass API Framework
litellm 4 5 ATLAS
MEDIUM EXPLOIT AVAIL

n8n: DoS via empty filesystem URI in binary-data API

CVE-2025-49595
4.9
EPSS 0.3%
DoS Agent Framework
n8n 16 3 ATLAS
UNKNOWN EXPLOIT AVAIL

Slack MCP: zero-click exfiltration via link unfurling

CVE-2025-34072
--
EPSS 0.4%
Prompt Injection Data Extraction Data Leakage Agent Plugin API
6 ATLAS
HIGH EXPLOIT AVAIL

Langchain-Chatchat: path traversal exposes system files

CVE-2025-6855
8.8
EPSS 0.7%
Data Extraction Code Execution Framework RAG
langchain-chatchat CWE-22 2.6K 5 ATLAS
MEDIUM EXPLOIT AVAIL

Langchain-Chatchat: path traversal in file API exposes host FS

CVE-2025-6854
4.3
EPSS 0.5%
Data Extraction Data Leakage Framework API RAG
langchain-chatchat CWE-22 2.6K 5 ATLAS
CRITICAL EXPLOIT AVAIL

Langchain-Chatchat: path traversal in KB upload

CVE-2025-6853
9.8
EPSS 0.6%
Code Execution Data Extraction Supply Chain Framework RAG
langchain-chatchat CWE-22 2.6K 5 ATLAS
MEDIUM

n8n: open redirect enables phishing via login flow

CVE-2025-49592
5.4
EPSS 0.2%
Social Engineering Auth Bypass Agent Framework
n8n 16 5 ATLAS
CRITICAL EXPLOIT AVAIL

LLaMA-Factory: RCE via unsafe checkpoint deserialization

CVE-2025-53002
9.8
EPSS 4.2%
Code Execution Supply Chain Framework Model
llamafactory CWE-94 1 6 ATLAS
CRITICAL EXPLOIT AVAIL

LangChain RequestsToolkit: SSRF exposes cloud metadata

CVE-2025-2828
10.0
EPSS 0.2%
Data Extraction Auth Bypass Framework Agent
langchain CWE-918 2.6K 5 ATLAS
MEDIUM

MLflow: unauthenticated SSRF in gateway proxy

CVE-2025-52967
5.8
EPSS 0.2%
Auth Bypass Data Extraction Framework API
mlflow Patch: 3.1.0 CWE-918 624 4 ATLAS
HIGH

Hive Support WP: OpenAI key theft + prompt hijack

CVE-2025-5018
7.1
EPSS 0.2%
Auth Bypass Data Extraction Prompt Injection API Plugin
6 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial