AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

77

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 1092 results — no patch
Severity CVE ID Summary CVSS EPSS Package Date
MEDI E CVE-2022-29192 TensorFlow: DoS via QuantizeAndDequantize input validation 5.5 0.1% tensorflow May 20 MEDI E CVE-2022-29191 TensorFlow: DoS via GetSessionTensor input validation 5.5 0.1% tensorflow May 20 HIGH E CVE-2022-24770 Gradio: CSV formula injection via flagging enables RCE 8.8 0.6% gradio Mar 17 CRIT E CVE-2022-0845 pytorch-lightning: code injection enables full RCE 9.8 0.3% pytorch_lightning Mar 5 HIGH E CVE-2022-0736 MLflow: insecure temp file handling causes DoS 7.5 0.6% mlflow Feb 23 MEDI E CVE-2022-23595 TensorFlow XLA: null pointer dereference causes DoS 6.5 0.2% tensorflow Feb 4 MEDI CVE-2022-23594 TensorFlow MLIR: heap OOB via malicious SavedModel file 5.5 0.0% tensorflow Feb 4 HIGH E CVE-2022-23593 TensorFlow MLIR-TFRT: DoS via scalar shape segfault 7.5 0.3% tensorflow Feb 4 HIGH E CVE-2022-23592 TensorFlow: heap OOB read in type inference engine 8.1 0.3% tensorflow Feb 4 HIGH E CVE-2022-23591 TensorFlow: SavedModel stack overflow via recursive GraphDef 7.5 0.3% tensorflow Feb 4 HIGH E CVE-2022-23590 TensorFlow: DoS via malicious SavedModel GraphDef 7.5 0.2% tensorflow Feb 4 MEDI E CVE-2022-23589 TensorFlow Grappler: DoS via malicious SavedModel 6.5 0.3% tensorflow Feb 4 MEDI E CVE-2022-23588 TensorFlow: DoS via crafted SavedModel crashes Grappler 6.5 0.3% tensorflow Feb 4 CRIT E CVE-2022-23587 TensorFlow: integer overflow in Grappler enables RCE 9.8 0.3% tensorflow Feb 4 MEDI E CVE-2022-23586 TensorFlow: SavedModel DoS crashes Python interpreter 6.5 0.3% tensorflow Feb 4 MEDI E CVE-2022-23585 TensorFlow: memory leak in PNG decode causes DoS 6.5 0.7% tensorflow Feb 4 MEDI E CVE-2022-23584 TensorFlow: use-after-free in PNG decode causes DoS 6.5 0.3% tensorflow Feb 4 MEDI E CVE-2022-23583 TensorFlow: SavedModel type confusion triggers DoS crash 6.5 0.3% tensorflow Feb 4 MEDI E CVE-2022-23582 TensorFlow: SavedModel CHECK-fail causes DoS 6.5 0.2% tensorflow Feb 4 MEDI E CVE-2022-23581 TensorFlow: DoS via Grappler optimizer CHECK failure 6.5 0.5% tensorflow Feb 4

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial