AI Security Threat Feed

Latest CVEs affecting AI/ML systems — LLM frameworks, ML libraries, AI agents, vector databases, and inference servers. Vulnerabilities are tracked from NVD, GitHub Advisory, CISA KEV, MITRE ATLAS, and enriched with CVSS, EPSS, exploitation confidence, AI-component classification, and compliance mappings to ISO 42001, EU AI Act, NIST AI RMF, and OWASP LLM Top 10. Updated continuously as new CVEs are published.

Each CVE is enriched with
  • CVSS severity
  • EPSS exploit probability
  • Exploitation confidence
  • AI-component classification
  • Compliance mappings
3,035

AI/ML CVEs Tracked

425

Critical

122

New This Week

19

In CISA KEV

Latest AI Security Threats

Showing 20 of 1052 results — Medium severity
Severity CVE ID Summary CVSS EPSS Package Date
MEDI CVE-2026-56354 n8n: stored XSS + phishing redirect in Form Node 5.4 0.2% n8n Jul 10 MEDI CVE-2026-59831 GitHub CLI: command execution via malicious Codespace URI 4.4 0.3% Jul 9 MEDI E CVE-2026-59853 SiYuan: broken access control leaks private note data 6.5 0.2% Jul 9 MEDI CVE-2026-59209 n8n: editor-level access leaks credential headers 6.5 0.3% n8n Jul 9 MEDI E CVE-2026-15193 OpenClaw Android: command injection via WebView bridge 5.3 0.7% Jul 9 MEDI CVE-2026-59225 Open WebUI: arena bypass reaches restricted models 5.4 0.2% open-webui Jul 9 MEDI CVE-2026-59212 Open WebUI: IDOR lets read-only users write/delete files 5.4 0.3% open-webui Jul 9 MEDI CVE-2026-59223 Open WebUI: SSRF via web-fetch blocklist bypass 4.3 0.2% open-webui Jul 9 MEDI E CVE-2026-59222 Open WebUI: channel IDOR leaks tool-server API keys 0.3% open-webui Jul 9 MEDI E CVE-2026-59217 Open WebUI: read-only users can inject files into RAG KBs 4.3 0.3% open-webui Jul 9 MEDI CVE-2026-59208 n8n: multi-issuer JWT sub collision bypasses auth 6.8 0.3% n8n Jul 9 MEDI CVE-2026-59207 n8n: MCP tool bypasses credential domain allowlist 6.5 0.3% n8n Jul 9 MEDI E CVE-2026-59220 Open WebUI: ReDoS in skill mentions blocks event loop 6.5 0.4% open-webui Jul 9 MEDI E CVE-2026-59227 Open WebUI: image-edit API bypasses admin permission gate 4.3 0.3% open-webui Jul 9 MEDI CVE-2026-59218 Open WebUI: timing leak enables account enumeration 5.3 0.2% open-webui Jul 9 MEDI CVE-2026-48737 pyload-ng: IPv6 SSRF bypass evades internal-IP guard 4.9 pyload-ng Jul 9 MEDI CVE-2026-9021 Easy Invoice (WP): missing authz on quote accept/decline 5.3 0.3% Jul 9 MEDI CVE-2026-59820 LiteLLM: Zip Slip in Skills upload allows file write 6.5 0.3% litellm Jul 8 MEDI CVE-2026-59819 LiteLLM: admin-scope local file read via OIDC ref 4.9 0.3% litellm Jul 8 MEDI CVE-2026-59261 OpenClaw: dotenv override leaks provider credentials 6.5 0.2% openclaw Jul 8

Frequently asked questions

What is an AI security threat feed?

An AI security threat feed is a continuously updated stream of vulnerabilities (CVEs) affecting AI and machine-learning systems — LLM frameworks, ML libraries, AI agents, vector databases, and inference servers — filtered out of the broader CVE firehose and enriched for relevance.

Which sources are the AI CVEs tracked from?

CVEs are tracked from NVD, GitHub Advisory, CISA KEV, and MITRE ATLAS, then enriched with CVSS, EPSS, exploitation confidence, AI-component classification, and compliance mappings.

What AI systems do these vulnerabilities affect?

Coverage spans LLM frameworks, ML libraries, AI agents, vector databases, and inference servers — the components most security teams now run in production.

How often is the AI threat feed updated?

The feed updates continuously as new CVEs are published and enriched, so the most recent AI/ML vulnerabilities appear at the top.

Is the AI security feed free?

Yes — the public feed is free to browse. A Pro subscription adds breaking alerts, MITRE ATLAS mappings, compliance reports (ISO 42001, EU AI Act), and full CISO analysis.

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial