AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

78

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 1604 results
Severity CVE ID Summary CVSS EPSS Package Date
MEDI E CVE-2022-21725 TensorFlow: DoS via div-by-zero in conv cost estimator 6.5 0.2% tensorflow Feb 3 MEDI E CVE-2022-23568 TensorFlow: integer overflow DoS in sparse tensor ops 6.5 0.3% tensorflow Feb 3 MEDI E CVE-2022-23567 TensorFlow: integer overflow DoS in sparse tensor ops 6.5 0.4% tensorflow Feb 3 MEDI E CVE-2022-21736 TensorFlow: NULL deref DoS via SparseTensorSliceDataset 6.5 0.3% tensorflow Feb 3 MEDI E CVE-2022-21733 TensorFlow: StringNGrams integer overflow enables OOM DoS 6.5 0.2% tensorflow Feb 3 MEDI E CVE-2022-21732 TensorFlow: ThreadPoolHandle DoS via memory exhaustion 6.5 0.2% tensorflow Feb 3 MEDI E CVE-2022-21731 TensorFlow: ConcatV2 type confusion enables remote DoS 6.5 0.3% tensorflow Feb 3 HIGH E CVE-2022-21730 TensorFlow: OOB read leaks heap memory, enables DoS 8.1 0.3% tensorflow Feb 3 HIGH E CVE-2022-21728 TensorFlow: heap OOB read in ReverseSequence op 8.1 1.1% tensorflow Feb 3 HIGH E CVE-2022-21727 TensorFlow: Dequantize integer overflow, RCE risk 8.8 0.3% tensorflow Feb 3 HIGH E CVE-2022-21726 TensorFlow: heap OOB read in Dequantize op allows RCE 8.8 0.3% tensorflow Feb 3 HIGH E CVE-2021-4118 pytorch-lightning: deserialization RCE via malicious checkpoint 7.8 0.3% pytorch_lightning Dec 23 HIGH E CVE-2021-43831 Gradio: path traversal exposes host filesystem to users 7.7 30.3% gradio Dec 15 HIGH E CVE-2021-43811 Sockeye: unsafe YAML load RCE via model config file 7.8 8.7% Dec 8 HIGH CVE-2021-41134 nbdime: stored XSS in Jupyter notebook diff viewer 8.7 0.3% Nov 8 HIGH E CVE-2021-41228 TensorFlow: eval() in saved_model_cli allows RCE 7.8 0.0% tensorflow Nov 5 MEDI E CVE-2021-41227 TensorFlow: OOB read in ImmutableConst leaks memory 5.5 0.1% tensorflow Nov 5 HIGH E CVE-2021-41225 TensorFlow Grappler: uninitialized var, local priv-esc 7.8 0.0% tensorflow Nov 5 MEDI E CVE-2021-41222 TensorFlow: SplitV negative arg segfault crashes process 5.5 0.0% tensorflow Nov 5 HIGH E CVE-2021-41221 TensorFlow: CuDNN heap overflow, local code execution 7.8 0.0% tensorflow Nov 5

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial