AI Security Threat Feed

Latest CVEs affecting AI/ML systems, updated continuously. Tracked from NVD, GitHub Advisory, and CISA KEV.

1,604

AI/ML CVEs Tracked

225

Critical

77

New This Week

16

In CISA KEV

Latest AI Security Threats

Showing 20 of 167 results — Critical severity, no patch
CRITICAL

cline: WebSocket auth bypass enables terminal RCE

CVE-2026-44211
9.6
Auth Bypass Code Execution Data Leakage Agent Plugin
CWE-306 7 ATLAS
CRITICAL

LiteLLM: SQL injection exposes LLM API credentials

CVE-2026-42208
9.8
EPSS 37.4%
Auth Bypass Data Extraction Supply Chain API Inference
litellm CWE-89 4 5 ATLAS
CRITICAL

pytorch-lightning: supply chain, credential harvesting

CVE-2026-44484
--
Supply Chain Data Extraction Code Execution Framework
pytorch-lightning CWE-506 1.6K 5 ATLAS
CRITICAL

Ollama: heap OOB read leaks API keys and chat data

CVE-2026-7482
9.1
EPSS 0.1%
Data Extraction Data Leakage Auth Bypass Inference Model
ollama 1.5K 5 ATLAS
CRITICAL

Gemini CLI: RCE via malicious workspace in CI/CD

GHSA-wpqr-6v78-jr5g
10.0
Code Execution Prompt Injection Supply Chain Agent Framework
CWE-20 7 ATLAS
CRITICAL EXPLOIT AVAIL

Flowise: auth bypass enables full account takeover via reset

CVE-2026-41276
9.8
EPSS 0.2%
Auth Bypass Data Extraction Code Execution Agent Framework
flowise CWE-287 5 ATLAS
CRITICAL EXPLOIT AVAIL

Flowise: unauthenticated RCE via NODE_OPTIONS env injection

CVE-2026-41268
9.8
EPSS 0.7%
Code Execution Auth Bypass Agent Framework
flowise 6 ATLAS
CRITICAL EXPLOIT AVAIL

Flowise: mass assignment auth bypass in registration

CVE-2026-41267
9.8
EPSS 0.3%
Auth Bypass Data Extraction Privacy Violation Agent Framework
flowise CWE-639 5 ATLAS
CRITICAL EXPLOIT AVAIL

Flowise: RCE via prompt injection in Airtable Agent

CVE-2026-41265
9.8
EPSS 0.2%
Prompt Injection Code Execution Agent Framework
flowise 7 ATLAS
CRITICAL EXPLOIT AVAIL

OpenAI Codex CLI: RCE via malicious MCP config files

CVE-2025-61260
9.8
EPSS 0.1%
Code Execution Supply Chain Agent Plugin
@openai/codex CWE-94 3.7K 5 ATLAS
CRITICAL EXPLOIT AVAIL

Claude Code: OS command injection, credential theft

CVE-2026-35022
9.8
EPSS 0.5%
Code Execution Data Extraction Supply Chain Agent API Framework
CWE-78 8 ATLAS
CRITICAL EXPLOIT AVAIL

Budibase: Unauthenticated RCE as root via webhook

CVE-2026-35216
9.1
EPSS 0.6%
Code Execution Auth Bypass Data Extraction Framework Agent
CWE-78 8 ATLAS
CRITICAL EXPLOIT AVAIL

MLflow: auth bypass in job API enables unauthenticated RCE

CVE-2026-0545
9.1
EPSS 5.5%
Auth Bypass Code Execution DoS Framework Training Data
mlflow CWE-306 624 5 ATLAS
CRITICAL EXPLOIT AVAIL

MLflow: command injection via model_uri in mlserver mode

CVE-2026-0596
9.6
EPSS 0.2%
Code Execution Supply Chain Framework Inference
CWE-78 4 ATLAS 1 incident
CRITICAL

telnyx: PyPI supply chain attack steals cloud creds

GHSA-955r-262c-33jc
--
Supply Chain Code Execution Data Extraction Framework API Agent
CWE-506 7 ATLAS 2 incidents
CRITICAL

litellm: supply chain attack harvests AI API credentials

GHSA-5mg7-485q-xm76
--
Supply Chain Data Extraction Code Execution Framework API Agent
litellm CWE-506 4 8 ATLAS
CRITICAL

NVIDIA: Deserialization enables RCE

CVE-2025-33244
9.0
EPSS 0.1%
Code Execution Supply Chain Data Extraction Framework Training Data
CWE-502 5 ATLAS
CRITICAL EXPLOIT AVAIL

langflow: security flaw enables exploitation

CVE-2026-33475
9.1
EPSS 0.1%
Supply Chain Code Execution Data Extraction Framework Agent
langflow CWE-74 5 ATLAS
CRITICAL KEV

langflow: Code Injection enables RCE

CVE-2026-33017
9.8
EPSS 41.2%
Model Poisoning Code Execution Framework Agent API
langflow CWE-95 6 ATLAS
CRITICAL EXPLOIT AVAIL

onnx: Integrity Verification bypass enables tampering

CVE-2026-28500
9.1
EPSS 0.0%
Supply Chain Model Poisoning Code Execution Framework RAG API
onnx CWE-345 1.2K 10 ATLAS

Need deeper analysis?

Get ATLAS technique mappings, compliance reports (ISO 42001, EU AI Act), breaking alerts, and full CISO analysis with a Pro subscription.

Start 14-Day Free Trial