Attack Type

Supply Chain

Supply chain attacks target the AI/ML software supply chain — compromised packages, poisoned model repositories, malicious dependencies, or tampered training data distributed through trusted channels.

471
Total CVEs
24
Pages
Page 20 of 24
Current
Severity CVE CVSS
MEDIUM GHSA-hf3c-wxg2-49q9 6.5
MEDIUM GHSA-v7x6-rv5q-mhwc -
MEDIUM GHSA-fj43-3qmq-673f -
HIGH CVE-2025-46417 -
HIGH CVE-2025-30370 7.4
CRITICAL CVE-2024-12909 10.0
MEDIUM CVE-2025-0508 5.9
MEDIUM CVE-2024-12910 5.9
CRITICAL CVE-2024-8019 9.1
HIGH CVE-2024-7776 8.1
HIGH GHSA-w466-2wfc-8g58 7.5
MEDIUM CVE-2024-7034 6.5
CRITICAL CVE-2024-9052 9.8
HIGH CVE-2024-6825 8.8
MEDIUM CVE-2025-1716 -
MEDIUM CVE-2025-1889 -
MEDIUM CVE-2024-53526 6.4
HIGH CVE-2024-5187 8.8
HIGH CVE-2024-49048 8.1
CRITICAL CVE-2023-6019 9.8

Page 20 of 24