ATLAS Landscape
AML.T0010.003

Model

AI-enabled systems often rely on open sourced models in various ways. Most commonly, the victim organization may be using these models for fine tuning. These models will be downloaded from an external source and then used as the base for the model as it is tuned on a smaller, private dataset. Loading models often requires executing some saved code in the form of a saved model file. These can be compromised with traditional malware, or through some adversarial AI techniques.

Severity CVE CVSS
CRITICAL GHSA-vvpj-8cmc-gx39 10.0
CRITICAL CVE-2025-15379 10.0
CRITICAL CVE-2020-13092 9.8
CRITICAL GHSA-g38g-8gr9-h9xp 9.8
CRITICAL CVE-2023-5245 9.8
CRITICAL CVE-2024-12029 9.8
CRITICAL CVE-2025-30405 9.8
CRITICAL CVE-2024-35198 9.8
CRITICAL CVE-2025-1945 9.8
CRITICAL CVE-2025-1550 9.8
CRITICAL GHSA-ggpf-24jw-3fcw 9.8
CRITICAL CVE-2025-49655 9.8
CRITICAL CVE-2026-22807 9.8
CRITICAL CVE-2024-3660 9.8
CRITICAL CVE-2024-3568 9.6
CRITICAL CVE-2024-34359 9.6
CRITICAL CVE-2025-15031 9.1
CRITICAL CVE-2026-28500 9.1
HIGH CVE-2023-6730 8.8
HIGH CVE-2025-67729 8.8
HIGH GHSA-hgrh-qx5j-jfwx 8.8
HIGH CVE-2025-66448 8.8
HIGH CVE-2025-58756 8.8
HIGH CVE-2025-24357 8.8
HIGH CVE-2024-11394 8.8
HIGH CVE-2024-11393 8.8
HIGH CVE-2024-37059 8.8
HIGH CVE-2024-37058 8.8
HIGH CVE-2024-37057 8.8
HIGH CVE-2024-37056 8.8
HIGH CVE-2024-37055 8.8
HIGH CVE-2024-37053 8.8
HIGH CVE-2024-37052 8.8
HIGH CVE-2026-27893 8.8
HIGH GHSA-j7w6-vpvq-j3gm 8.8
HIGH CVE-2026-6859 8.8
HIGH CVE-2026-34445 8.6
HIGH CVE-2020-15212 8.6
HIGH CVE-2025-10157 8.3
HIGH CVE-2021-29597 7.8
HIGH CVE-2026-27905 7.8
HIGH CVE-2025-5173 7.8
HIGH CVE-2025-8747 7.8
HIGH CVE-2021-29603 7.8
HIGH CVE-2021-29588 7.8
HIGH CVE-2021-43811 7.8
HIGH CVE-2021-29606 7.8
HIGH CVE-2021-29598 7.8
HIGH CVE-2025-10156 7.5
HIGH CVE-2026-1669 7.5
HIGH CVE-2022-23591 7.5
HIGH CVE-2025-66960 7.5
HIGH CVE-2025-9905 7.3
HIGH CVE-2025-9906 7.3
HIGH CVE-2021-29601 7.1
MEDIUM CVE-2025-51471 6.9
MEDIUM CVE-2022-23583 6.5
MEDIUM CVE-2022-23565 6.5
MEDIUM CVE-2022-23586 6.5
MEDIUM CVE-2020-15209 5.9
MEDIUM CVE-2026-1778 5.9
MEDIUM CVE-2025-8917 5.8
MEDIUM CVE-2021-41213 5.5
MEDIUM CVE-2024-31584 5.5
MEDIUM CVE-2023-48299 5.3
MEDIUM CVE-2026-21851 5.3
MEDIUM CVE-2020-26266 5.3
LOW CVE-2020-26271 3.3
UNKNOWN CVE-2025-12638
CRITICAL GHSA-m9mp-6x32-5rhg
HIGH GHSA-97f8-7cmv-76j2
MEDIUM GHSA-j343-8v2j-ff7w
MEDIUM GHSA-m869-42cg-3xwr
MEDIUM GHSA-xp4f-hrf8-rxw7
MEDIUM GHSA-8r4j-24qv-fmq9
MEDIUM GHSA-7cq8-mj8x-j263
MEDIUM GHSA-6w4w-5w54-rjvr
MEDIUM GHSA-3vg9-h568-4w9m
MEDIUM GHSA-f54q-57x4-jg88
MEDIUM GHSA-6vqj-c2q5-j97w
MEDIUM GHSA-vv6j-3g6g-2pvj
MEDIUM GHSA-vr7h-p6mm-wpmh
MEDIUM GHSA-h3qp-7fh3-f8h4
MEDIUM GHSA-4r9r-ch6f-vxmx
UNKNOWN CVE-2025-14929
MEDIUM GHSA-r54c-2xmf-2cf3
HIGH CVE-2025-54413
UNKNOWN CVE-2025-14930
MEDIUM GHSA-fj43-3qmq-673f
HIGH GHSA-vqmv-47xg-9wpr
HIGH GHSA-rrxm-2pvv-m66x
MEDIUM CVE-2025-1889
HIGH CVE-2026-22609
HIGH GHSA-46h3-79wf-xr6c
MEDIUM GHSA-3gf5-cxq9-w223
HIGH GHSA-5hwf-rc88-82xm
HIGH GHSA-4675-36f9-wf6r
UNKNOWN CVE-2025-14928
UNKNOWN CVE-2025-14924
UNKNOWN CVE-2025-14921
UNKNOWN CVE-2025-14920
UNKNOWN CVE-2025-14926