Attack Type

Supply Chain

Supply chain attacks target the AI/ML software supply chain — compromised packages, poisoned model repositories, malicious dependencies, or tampered training data distributed through trusted channels.

460
Total CVEs
23
Pages
Page 6 of 23
Current
Severity CVE CVSS
HIGH CVE-2024-37057 8.8
MEDIUM CVE-2025-5197 5.3
MEDIUM CVE-2025-55556 6.5
HIGH CVE-2021-43811 7.8
HIGH CVE-2021-4118 7.8
CRITICAL CVE-2022-0845 9.8
CRITICAL CVE-2022-45907 9.8
CRITICAL CVE-2023-43654 9.8
MEDIUM CVE-2023-48299 5.3
HIGH CVE-2024-31583 7.8
MEDIUM CVE-2024-31584 5.5
HIGH CVE-2024-37059 8.8
CRITICAL CVE-2024-5452 9.8
CRITICAL CVE-2024-35198 9.8
CRITICAL CVE-2024-48063 9.8
MEDIUM CVE-2025-1944 6.5
CRITICAL CVE-2025-1945 9.8
HIGH CVE-2025-2148 7.5
LOW CVE-2025-2149 2.5
MEDIUM CVE-2024-6577 6.3

Page 6 of 23