Attack Type

Supply Chain

Supply chain attacks target the AI/ML software supply chain — compromised packages, poisoned model repositories, malicious dependencies, or tampered training data distributed through trusted channels.

469
Total CVEs
24
Pages
Page 17 of 24
Current
Severity CVE CVSS
HIGH CVE-2025-7707 7.1
CRITICAL GHSA-m9mp-6x32-5rhg -
MEDIUM CVE-2025-8917 5.8
HIGH CVE-2025-30402 8.1
HIGH CVE-2025-7647 7.3
HIGH CVE-2025-58757 8.8
HIGH CVE-2025-58756 8.8
HIGH CVE-2025-58755 8.8
LOW CVE-2025-59842 -
HIGH CVE-2025-10156 7.5
HIGH CVE-2025-10157 8.3
MEDIUM GHSA-q77w-mwjj-7mqx -
MEDIUM GHSA-49gj-c84q-6qm9 -
MEDIUM GHSA-9w88-8rmg-7g2p -
MEDIUM GHSA-fqq6-7vqf-w3fg -
MEDIUM GHSA-3gf5-cxq9-w223 -
MEDIUM GHSA-j343-8v2j-ff7w -
MEDIUM GHSA-m869-42cg-3xwr -
MEDIUM GHSA-p9w7-82w4-7q8m -
MEDIUM GHSA-xp4f-hrf8-rxw7 -

Page 17 of 24