ATLAS Landscape
AML.T0078

Drive-by Compromise

Adversaries may gain access to an AI system through a user visiting a website over the normal course of browsing, or an AI agent retrieving information from the web on behalf of a user. Websites can contain an [LLM Prompt Injection](/techniques/AML.T0051) which, when executed, can change the behavior of the AI model. The same approach may be used to deliver other types of malicious code that don't target AI directly (See [Drive-by Compromise in ATT&CK](https://attack.mitre.org/techniques/T1189/)).

Severity CVE CVSS
CRITICAL CVE-2026-25130 9.7
CRITICAL CVE-2026-44211 9.6
HIGH CVE-2025-34291 8.8
HIGH CVE-2024-11392 8.8
HIGH CVE-2024-11393 8.8
HIGH CVE-2024-11394 8.8
HIGH CVE-2026-28416 8.6
HIGH CVE-2024-47084 8.3
HIGH GHSA-x462-jjpc-q4q4 8.1
HIGH CVE-2025-14279 8.1
HIGH CVE-2024-7806 8.0
MEDIUM CVE-2024-7035 6.9
MEDIUM CVE-2024-7044 6.8
MEDIUM CVE-2024-6581 6.5
MEDIUM CVE-2025-7021 6.5
MEDIUM CVE-2026-26320 6.5
MEDIUM CVE-2024-4940 6.1
MEDIUM CVE-2026-44897 6.1
MEDIUM CVE-2021-28796 6.1
MEDIUM CVE-2026-27482 5.9
MEDIUM CVE-2025-58177 5.4
MEDIUM GHSA-3c7f-5hgj-h279 5.4
MEDIUM CVE-2025-52478 5.4
MEDIUM CVE-2024-47165 5.4
MEDIUM CVE-2026-25640 5.4
LOW CVE-2025-5320 3.7
LOW CVE-2026-32722 3.6
HIGH GHSA-2r2p-4cgf-hv7h
UNKNOWN CVE-2025-14921
HIGH CVE-2025-47783
UNKNOWN CVE-2025-14924
MEDIUM CVE-2026-21883
MEDIUM CVE-2026-23528
HIGH CVE-2026-2472
UNKNOWN CVE-2024-1727
MEDIUM GHSA-h8r8-wccr-v5f2
MEDIUM GHSA-vr5g-mmx7-h897
CRITICAL CVE-2025-62593
HIGH CVE-2026-42557
UNKNOWN CVE-2025-14920