ATLAS Landscape
AML.T0040

AI Model Inference API Access

Adversaries may gain access to a model via legitimate access to the inference API. Inference API access can be a source of information to the adversary ([Discover AI Model Ontology](/techniques/AML.T0013), [Discover AI Model Family](/techniques/AML.T0014)), a means of staging the attack ([Verify Attack](/techniques/AML.T0042), [Craft Adversarial Data](/techniques/AML.T0043)), or for introducing data to the target system for Impact ([Evade AI Model](/techniques/AML.T0015), [Erode AI Model Integrity](/techniques/AML.T0031)). Many systems rely on the same models provided via an inference API, which means they share the same vulnerabilities. This is especially true of foundation models which are prohibitively resource intensive to train. Adversaries may use their access to model APIs to identify vulnerabilities such as jailbreaks or hallucinations and then target applications that use the same models.

Severity CVE CVSS
CRITICAL CVE-2025-53767 10.0
CRITICAL CVE-2020-15196 9.9
CRITICAL CVE-2025-54381 9.9
CRITICAL CVE-2024-52384 9.9
CRITICAL CVE-2023-3686 9.8
CRITICAL CVE-2026-25960 9.8
CRITICAL CVE-2024-9053 9.8
CRITICAL CVE-2022-41900 9.8
CRITICAL CVE-2023-25664 9.8
CRITICAL CVE-2020-15208 9.8
CRITICAL CVE-2026-42208 9.8
CRITICAL CVE-2025-63389 9.8
CRITICAL CVE-2026-30824 9.8
CRITICAL CVE-2026-22778 9.8
CRITICAL CVE-2024-47871 9.1
CRITICAL CVE-2022-35938 9.1
CRITICAL CVE-2026-35030 9.1
CRITICAL CVE-2026-21445 9.1
HIGH CVE-2022-23574 8.8
HIGH CVE-2022-21727 8.8
HIGH GHSA-mcmc-2m55-j8jj 8.8
HIGH CVE-2020-15195 8.8
HIGH CVE-2025-62164 8.8
HIGH CVE-2025-9141 8.8
HIGH CVE-2024-37032 8.8
HIGH CVE-2024-32965 8.6
HIGH CVE-2026-26286 8.5
HIGH CVE-2024-7039 8.3
HIGH CVE-2026-1117 8.2
HIGH CVE-2026-29872 8.2
HIGH CVE-2024-35199 8.2
HIGH CVE-2024-4888 8.1
HIGH CVE-2022-23592 8.1
HIGH CVE-2025-0628 8.1
HIGH CVE-2024-47870 8.1
HIGH CVE-2024-0453 7.7
HIGH CVE-2024-7959 7.7
HIGH CVE-2024-0452 7.7
HIGH CVE-2026-34936 7.7
HIGH CVE-2026-44555 7.6
HIGH CVE-2024-7714 7.5
HIGH CVE-2024-6587 7.5
HIGH CVE-2024-8768 7.5
HIGH CVE-2026-40116 7.5
HIGH CVE-2026-0599 7.5
HIGH CVE-2020-5215 7.5
HIGH CVE-2025-15514 7.5
HIGH CVE-2022-35934 7.5
HIGH CVE-2025-59425 7.5
HIGH CVE-2025-55558 7.5
HIGH CVE-2022-35935 7.5
HIGH CVE-2022-35971 7.5
HIGH CVE-2022-35973 7.5
HIGH CVE-2022-35981 7.5
HIGH CVE-2022-35986 7.5
HIGH CVE-2022-36026 7.5
HIGH CVE-2022-35993 7.5
HIGH CVE-2022-36003 7.5
HIGH CVE-2024-9606 7.5
HIGH CVE-2022-36016 7.5
HIGH CVE-2022-36017 7.5
HIGH CVE-2024-34527 7.5
HIGH CVE-2025-46722 7.3
HIGH CVE-2025-64496 7.3
HIGH CVE-2026-44567 7.3
HIGH CVE-2025-12973 7.2
HIGH CVE-2021-29582 7.1
HIGH CVE-2026-24779 7.1
HIGH CVE-2025-6242 7.1
HIGH CVE-2021-29560 7.1
HIGH CVE-2021-29532 7.1
HIGH CVE-2020-15193 7.1
HIGH CVE-2026-44556 7.1
MEDIUM CVE-2024-28224 6.6
MEDIUM CVE-2025-14980 6.5
MEDIUM CVE-2022-21731 6.5
MEDIUM CVE-2025-62372 6.5
MEDIUM CVE-2025-61620 6.5
MEDIUM CVE-2025-13922 6.5
MEDIUM CVE-2026-30886 6.5
MEDIUM CVE-2022-23564 6.5
MEDIUM CVE-2022-21737 6.5
MEDIUM CVE-2026-44222 6.5
MEDIUM CVE-2024-2206 6.5
MEDIUM CVE-2025-68477 6.5
MEDIUM CVE-2026-44562 6.5
MEDIUM CVE-2025-29770 6.5
MEDIUM CVE-2026-44560 6.5
MEDIUM CVE-2025-62426 6.5
MEDIUM GHSA-hf3c-wxg2-49q9 6.5
MEDIUM CVE-2025-48942 6.5
MEDIUM CVE-2025-48943 6.5
MEDIUM CVE-2026-34756 6.5
MEDIUM CVE-2024-13698 6.5
MEDIUM CVE-2024-11896 6.4
MEDIUM CVE-2025-6716 6.4
MEDIUM CVE-2026-5530 6.3
MEDIUM CVE-2026-5803 6.3
MEDIUM CVE-2024-8939 6.2
MEDIUM CVE-2026-7141 5.6
MEDIUM CVE-2023-1651 5.4
MEDIUM CVE-2025-45809 5.4
MEDIUM CVE-2026-34753 5.4
MEDIUM CVE-2026-44563 5.4
MEDIUM CVE-2025-46153 5.3
MEDIUM GHSA-26jh-r8g2-6fpr 5.3
MEDIUM CVE-2023-34094 5.3
MEDIUM CVE-2026-2589 5.3
MEDIUM CVE-2024-6845 5.3
MEDIUM CVE-2026-39411 5.0
MEDIUM CVE-2024-0451 5.0
MEDIUM CVE-2025-12732 4.3
MEDIUM CVE-2025-12360 4.3
MEDIUM CVE-2025-60511 4.3
MEDIUM CVE-2025-31843 4.3
MEDIUM CVE-2024-7045 4.3
MEDIUM CVE-2026-6393 4.3
MEDIUM CVE-2025-68492 4.2
LOW CVE-2025-5320 3.7
LOW CVE-2024-47869 3.7
LOW CVE-2026-4993 3.3
LOW CVE-2025-25183 2.6
LOW CVE-2025-1953 2.6
LOW CVE-2025-46570 2.6
UNKNOWN CVE-2026-33401
UNKNOWN CVE-2025-11203
UNKNOWN CVE-2024-11037
MEDIUM GHSA-68f8-9mhj-h2mp
UNKNOWN CVE-2024-56516
HIGH GHSA-xqmj-j6mv-4862
UNKNOWN CVE-2025-15063
UNKNOWN CVE-2026-25083
UNKNOWN CVE-2024-1729
CRITICAL GHSA-r75f-5x8p-qvmc
UNKNOWN CVE-2026-4399
HIGH GHSA-69x8-hrgq-fjj8
LOW CVE-2025-63681