ATLAS Landscape
AML.T0018.002

Embed Malware

Adversaries may embed malicious code into AI Model files. AI models may be packaged as a combination of instructions and weights. Some formats such as pickle files are unsafe to deserialize because they can contain unsafe calls such as exec. Models with embedded malware may still operate as expected. It may allow them to achieve Execution, Command & Control, or Exfiltrate Data.

Severity CVE CVSS
CRITICAL GHSA-vvpj-8cmc-gx39 10.0
CRITICAL CVE-2024-3660 9.8
CRITICAL CVE-2020-13092 9.8
CRITICAL CVE-2023-5245 9.8
CRITICAL CVE-2023-43654 9.8
CRITICAL CVE-2025-54949 9.8
CRITICAL CVE-2025-30404 9.8
CRITICAL CVE-2025-54950 9.8
CRITICAL CVE-2025-54951 9.8
CRITICAL GHSA-g38g-8gr9-h9xp 9.8
CRITICAL GHSA-7wx9-6375-f5wh 9.8
CRITICAL CVE-2025-53002 9.8
CRITICAL CVE-2025-32434 9.8
CRITICAL CVE-2024-12029 9.8
CRITICAL GHSA-ggpf-24jw-3fcw 9.8
CRITICAL CVE-2025-1550 9.8
CRITICAL CVE-2025-1945 9.8
CRITICAL CVE-2025-49655 9.8
CRITICAL CVE-2024-35198 9.8
CRITICAL CVE-2026-22807 9.8
CRITICAL CVE-2024-34359 9.6
CRITICAL CVE-2024-3568 9.6
CRITICAL CVE-2026-28500 9.1
CRITICAL CVE-2025-15031 9.1
CRITICAL CVE-2025-33244 9.0
HIGH CVE-2024-37055 8.8
HIGH CVE-2024-37054 8.8
HIGH CVE-2026-1462 8.8
HIGH CVE-2024-37053 8.8
HIGH CVE-2024-37052 8.8
HIGH CVE-2025-24357 8.8
HIGH CVE-2018-8825 8.8
HIGH CVE-2024-11394 8.8
HIGH CVE-2023-6730 8.8
HIGH CVE-2024-11393 8.8
HIGH CVE-2024-11392 8.8
HIGH CVE-2024-37059 8.8
HIGH CVE-2024-37058 8.8
HIGH CVE-2025-67729 8.8
HIGH CVE-2024-37057 8.8
HIGH CVE-2024-37056 8.8
HIGH CVE-2025-33213 8.8
HIGH CVE-2026-6859 8.8
HIGH CVE-2024-37060 8.8
HIGH CVE-2026-24747 8.8
HIGH GHSA-hgrh-qx5j-jfwx 8.8
HIGH CVE-2022-23560 8.8
HIGH CVE-2026-27893 8.8
HIGH CVE-2025-58756 8.8
HIGH CVE-2021-37678 8.8
HIGH CVE-2026-34445 8.6
HIGH CVE-2025-54886 8.4
HIGH CVE-2025-10157 8.3
HIGH CVE-2025-68664 8.2
HIGH CVE-2026-2033 8.1
HIGH CVE-2021-4118 7.8
HIGH CVE-2025-10155 7.8
HIGH CVE-2025-8747 7.8
HIGH CVE-2025-46567 7.8
HIGH CVE-2025-5173 7.8
HIGH CVE-2024-5998 7.8
HIGH CVE-2025-33233 7.8
HIGH CVE-2024-34072 7.8
HIGH CVE-2024-31583 7.8
HIGH CVE-2023-7018 7.8
HIGH CVE-2021-43811 7.8
HIGH CVE-2024-14021 7.8
HIGH CVE-2026-27905 7.8
HIGH GHSA-89gg-p5r5-q6r4 7.7
HIGH CVE-2025-10156 7.5
HIGH CVE-2026-1669 7.5
HIGH CVE-2026-44566 7.3
HIGH CVE-2025-9905 7.3
HIGH CVE-2025-9906 7.3
HIGH CVE-2025-10279 7.0
MEDIUM CVE-2026-28277 6.8
MEDIUM CVE-2024-7034 6.5
MEDIUM CVE-2024-55459 6.5
MEDIUM CVE-2025-1944 6.5
MEDIUM CVE-2026-1839 6.5
MEDIUM CVE-2026-1778 5.9
MEDIUM CVE-2020-26266 5.3
MEDIUM CVE-2026-4538 5.3
MEDIUM CVE-2023-48299 5.3
MEDIUM GHSA-6w4w-5w54-rjvr
HIGH CVE-2025-67748
HIGH CVE-2025-67747
UNKNOWN CVE-2025-12638
UNKNOWN CVE-2026-2492
MEDIUM GHSA-5cxw-w2xg-2m8h
HIGH GHSA-97f8-7cmv-76j2
HIGH GHSA-5hwf-rc88-82xm
HIGH GHSA-wccx-j62j-r448
MEDIUM GHSA-mhc9-48gj-9gp3
HIGH GHSA-mxhj-88fx-4pcv
LOW GHSA-83pf-v6qq-pwmr
HIGH GHSA-9m3x-qqw2-h32h
HIGH CVE-2026-22607
HIGH GHSA-46h3-79wf-xr6c
HIGH CVE-2026-22612
HIGH CVE-2026-22609
HIGH CVE-2026-22608
HIGH CVE-2026-22606
HIGH GHSA-955r-x9j8-7rhh
MEDIUM GHSA-6556-fwc2-fg2p
HIGH GHSA-rrxm-2pvv-m66x
MEDIUM GHSA-cffc-mxrf-mhh4
HIGH GHSA-3329-ghmp-jmv5
HIGH GHSA-x843-g5mx-g377
HIGH GHSA-vqmv-47xg-9wpr
UNKNOWN CVE-2025-14930
UNKNOWN CVE-2025-14929
HIGH GHSA-r8g5-cgf2-4m4m
HIGH GHSA-84r2-jw7c-4r5q
HIGH GHSA-4675-36f9-wf6r
HIGH GHSA-m273-6v24-x4m4
UNKNOWN CVE-2025-14927
UNKNOWN CVE-2025-14926
UNKNOWN CVE-2025-14924
UNKNOWN CVE-2025-14921
UNKNOWN CVE-2025-14920
UNKNOWN CVE-2025-14928
CRITICAL GHSA-m9mp-6x32-5rhg
MEDIUM GHSA-3gf5-cxq9-w223
MEDIUM GHSA-q77w-mwjj-7mqx
MEDIUM GHSA-49gj-c84q-6qm9
MEDIUM GHSA-9w88-8rmg-7g2p
MEDIUM GHSA-fqq6-7vqf-w3fg
MEDIUM GHSA-j343-8v2j-ff7w
MEDIUM GHSA-m869-42cg-3xwr
MEDIUM GHSA-p9w7-82w4-7q8m
MEDIUM GHSA-xp4f-hrf8-rxw7
MEDIUM GHSA-4whj-rm5r-c2v8
MEDIUM GHSA-9xph-j2h6-g47v
MEDIUM GHSA-8r4j-24qv-fmq9
MEDIUM GHSA-cj3c-v495-4xqh
MEDIUM GHSA-7cq8-mj8x-j263
MEDIUM GHSA-3vg9-h568-4w9m
MEDIUM GHSA-f54q-57x4-jg88
MEDIUM GHSA-6vqj-c2q5-j97w
MEDIUM GHSA-x696-vm39-cp64
MEDIUM GHSA-g344-hcph-8vgg
MEDIUM GHSA-5qwp-399c-mjwf
MEDIUM GHSA-vv6j-3g6g-2pvj
MEDIUM GHSA-vr7h-p6mm-wpmh
MEDIUM GHSA-h3qp-7fh3-f8h4
MEDIUM GHSA-f745-w6jp-hpxx
MEDIUM GHSA-f4x7-rfwp-v3xw
MEDIUM GHSA-86cj-95qr-2p4f
MEDIUM GHSA-4r9r-ch6f-vxmx
HIGH GHSA-9gvj-pp9x-gcfr
MEDIUM CVE-2025-54952
MEDIUM GHSA-r54c-2xmf-2cf3
HIGH CVE-2025-54413
HIGH CVE-2025-54412
MEDIUM GHSA-fj43-3qmq-673f
MEDIUM GHSA-v7x6-rv5q-mhwc
MEDIUM CVE-2025-1889
UNKNOWN CVE-2024-4897
UNKNOWN CVE-2024-4254
UNKNOWN CVE-2018-7575