AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

78

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 1092 results — no patch
Severity CVE ID Summary CVSS EPSS Package Date
HIGH CVE-2021-37651 TensorFlow: heap OOB r/w in FractionalAvgPoolGrad op 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37650 TensorFlow: heap overflow in DatasetToTFRecord ops 7.8 0.0% tensorflow Aug 12 MEDI CVE-2021-37646 TensorFlow: StringNGrams integer overflow triggers DoS 5.5 0.0% tensorflow Aug 12 MEDI CVE-2021-37645 TensorFlow: integer overflow in quantize grad causes DoS 5.5 0.0% tensorflow Aug 12 MEDI CVE-2021-37644 TensorFlow: DoS via negative TensorListReserve input 5.5 0.0% tensorflow Aug 12 HIGH CVE-2021-37641 TensorFlow: RaggedGather OOB read - heap leak + DoS 7.1 0.0% tensorflow Aug 12 HIGH CVE-2021-37635 TensorFlow: heap OOB read in sparse reduction ops 7.1 0.0% tensorflow Aug 12 MEDI CVE-2021-37649 TensorFlow: null ptr deref crashes inference via bad tensor 5.5 0.0% tensorflow Aug 12 MEDI CVE-2021-37647 TensorFlow: null deref in SparseTensor ops causes DoS 5.5 0.0% tensorflow Aug 12 HIGH CVE-2021-37643 TensorFlow: null deref in MatrixDiagPartOp, DoS risk 7.1 0.0% tensorflow Aug 12 HIGH CVE-2021-37639 TensorFlow: heap OOB read via tensor restore API 7.8 0.0% tensorflow Aug 12 HIGH CVE-2021-37638 TensorFlow: null ptr deref in RaggedTensorToTensor op 7.8 0.0% tensorflow Aug 12 MEDI CVE-2021-37637 TensorFlow: null ptr dereference in CompressElement (DoS) 5.5 0.0% tensorflow Aug 12 MEDI CVE-2021-37660 TensorFlow: DoS via divide-by-zero in inplace ops 5.5 0.0% tensorflow Aug 12 MEDI CVE-2021-37653 TensorFlow: DoS via divide-by-zero in ResourceGather op 5.5 0.0% tensorflow Aug 12 MEDI CVE-2021-37642 TensorFlow: ResourceScatterDiv div-by-zero enables DoS 5.5 0.0% tensorflow Aug 12 MEDI CVE-2021-37640 TensorFlow: SparseReshape div-by-zero crashes ML pipelines 5.5 0.0% tensorflow Aug 12 MEDI CVE-2021-37636 TensorFlow: div-by-zero DoS in SparseDenseCwiseDiv op 5.5 0.0% tensorflow Aug 12 CRIT E CVE-2021-35958 TensorFlow: path traversal in get_file allows file overwrite 9.1 1.1% tensorflow Jun 30 MEDI E CVE-2021-29619 TensorFlow: DoS via invalid SparseCount op args 5.5 0.0% tensorflow May 14

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial