AI Security Threat Feed
Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.
AI/ML CVEs Tracked
Critical
New This Week
In CISA KEV
Latest AI Security Threats
Showing 20 of 684 results — High severityfickling: Allowlist Bypass evades input filtering
GHSA-5hwf-rc88-82xm fickling: Protection Bypass circumvents security controls
GHSA-wccx-j62j-r448 A vulnerability in NLTK versions up to and including 3.9.2 allows arbitrary file read via path traversal in multiple CorpusReader classes, including...
CVE-2026-0847 bentoml: security flaw enables exploitation
CVE-2026-27905 gradio: SSRF allows internal network access
CVE-2026-28416 gradio: security flaw enables exploitation
CVE-2026-28414 n8n: Code Injection enables RCE
CVE-2026-27498 n8n: SQL Injection exposes database
CVE-2026-27497 fickling: security flaw enables exploitation
GHSA-mxhj-88fx-4pcv mlflow: Path Traversal enables file access
CVE-2026-2033 google-cloud-aiplatform: XSS enables session hijacking
CVE-2026-2472 OpenClaw: prompt injection via unsanitized workspace path
CVE-2026-27001 OpenClaw: path traversal enables local file exfiltration
CVE-2026-26321 sillytavern: SSRF allows internal network access
CVE-2026-26286 picklescan: Allowlist Bypass evades input filtering
GHSA-97f8-7cmv-76j2 keras: File Control enables path manipulation
CVE-2026-1669 pydantic-ai: SSRF allows internal network access
CVE-2026-25580 n8n: Input Validation flaw enables exploitation
CVE-2026-21893 n8n: Arbitrary File Upload enables RCE
CVE-2026-25056 n8n: Path Traversal enables file access
CVE-2026-25055 Need deeper analysis?
Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.
Start 14-Day Free Trial
AI Threat Alert