AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

76

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 220 results — Medium severity, has patch
MEDIUM

openclaw: SSRF in marketplace plugin download

GHSA-vjx8-8p7h-82gr
--
Supply Chain Data Extraction Auth Bypass Agent Plugin
openclaw Patch: 2026.3.31 CWE-918 4 4 ATLAS 1 incident
MEDIUM

openclaw: media download bypass exhausts disk storage

GHSA-4g5x-2jfc-xm98
--
DoS Agent Plugin
openclaw Patch: 2026.3.31 CWE-434 4 3 ATLAS
MEDIUM

openclaw: operator scope bypass in phone arm/disarm cmds

GHSA-h2v7-xc88-xx8c
--
Auth Bypass Agent Plugin
openclaw Patch: 2026.3.28 CWE-285 4 3 ATLAS 1 incident
MEDIUM EXPLOIT AVAIL

MLflow: stored XSS via MLmodel YAML artifact upload

CVE-2026-33865
--
EPSS 0.0%
Code Execution Auth Bypass Data Extraction Framework Model
mlflow Patch: 3.11.1 CWE-79 624 4 ATLAS
MEDIUM EXPLOIT AVAIL

HuggingFace Transformers: RCE via malicious checkpoint load

CVE-2026-1839
6.5
EPSS 0.0%
Code Execution Supply Chain Framework Training Data
transformers Patch: 5.0.0rc3 CWE-502 7.9K 3 ATLAS
MEDIUM

OpenClaw: script preflight bypass enables unsafe exec

CVE-2026-34425
--
EPSS 0.1%
Auth Bypass Code Execution Agent Plugin
openclaw Patch: 2026.4.2 CWE-184 4 4 ATLAS 1 incident
MEDIUM

kedro-datasets: path traversal enables arbitrary file write

CVE-2026-35492
6.5
EPSS 0.0%
Supply Chain Model Poisoning Code Execution Framework Training Data
kedro-datasets Patch: 9.3.0 CWE-22 2.8K 3 ATLAS
MEDIUM

vLLM: OOM DoS via unbounded video frame decoding

CVE-2026-34755
6.5
EPSS 0.1%
DoS Framework Inference API
vllm Patch: 0.19.0 CWE-770 127 3 ATLAS
MEDIUM

vLLM: SSRF in batch API exposes cloud metadata endpoints

CVE-2026-34753
5.4
EPSS 0.0%
Data Extraction Auth Bypass Framework Inference
vllm Patch: 0.19.0 CWE-918 127 5 ATLAS
MEDIUM

vLLM: DoS via unbounded n parameter causes OOM crash

CVE-2026-34756
6.5
EPSS 0.0%
DoS Inference API
vllm Patch: 0.19.0 CWE-770 127 4 ATLAS
MEDIUM

OpenClaw: SSRF in marketplace fetch hits internal AI infra

GHSA-9q7v-8mr7-g23p
--
Supply Chain Data Extraction Auth Bypass Plugin Inference Agent
openclaw Patch: 2026.3.31 CWE-918 4 4 ATLAS
MEDIUM EXPLOIT AVAIL

ONNX: symlink traversal reads host files via model loading

CVE-2026-34447
5.5
EPSS 0.0%
Supply Chain Data Extraction Framework Model
onnx Patch: 1.21.0 CWE-22 1.2K 5 ATLAS
MEDIUM

ONNX: hardlink path traversal leaks sensitive files

CVE-2026-34446
4.7
EPSS 0.0%
Supply Chain Data Extraction Framework Model
onnx Patch: 1.21.0 CWE-22 1.2K 4 ATLAS
MEDIUM

Anthropic SDK: TOCTOU symlink escape in async memory tool

CVE-2026-34452
--
EPSS 0.0%
Code Execution Data Extraction Auth Bypass Framework Agent API
anthropic Patch: 0.87.0 CWE-59 4.8K 5 ATLAS 17 incidents
MEDIUM

anthropic-ai/sdk: memory tool path traversal escape

CVE-2026-34451
--
EPSS 0.1%
Prompt Injection Data Extraction Code Execution Framework Agent API
@anthropic-ai/sdk Patch: 0.81.0 CWE-22 240 6 ATLAS
MEDIUM

anthropic-sdk: insecure file perms expose agent memory

CVE-2026-34450
--
EPSS 0.0%
Data Leakage Model Poisoning Data Extraction Agent Framework API
anthropic Patch: 0.87.0 CWE-276 4.8K 4 ATLAS 17 incidents
MEDIUM

OpenClaw: HTTP scope bypass enables model enumeration

GHSA-68f8-9mhj-h2mp
--
Auth Bypass Data Extraction API Inference
openclaw Patch: 2026.3.24 CWE-284 4 4 ATLAS 2 incidents
MEDIUM

openclaw: webhook rate-limit bypass enables token brute-force

CVE-2026-35646
--
EPSS 0.1%
Auth Bypass Data Extraction Agent Plugin
openclaw Patch: 2026.3.28 CWE-307 4 4 ATLAS 1 incident
MEDIUM

openclaw: unauthenticated webhook parsing enables DoS

CVE-2026-35640
--
EPSS 0.1%
DoS Agent
openclaw Patch: 2026.3.28 CWE-400 4 3 ATLAS
MEDIUM

openclaw: auth bypass exposes agent session history via HTTP

CVE-2026-35657
--
EPSS 0.0%
Auth Bypass Data Extraction Agent API
openclaw Patch: 2026.3.25 CWE-639 4 3 ATLAS 1 incident

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial