AI
Breaking Wire
Content
Ecosystem
Community
Pricing
AI Vulnerability Database
490 vulnerabilities tracked — CVEs, prompt injection, model exploits.
CRITICAL
CVE-2023-29374
Remote Code Execution in LangChain via PALChain Arbitrary Python Execution
LangChain < 0.0.171
15 Feb 2025
3 views
Patched
CRITICAL
CVE-2024-21513
GitHub Copilot Workspace Insecurely Exposes Read/Write Terminal Access via Malicious Markdown
Previous
Page 15 of 41
Next
GitHub Copilot for VS Code < 1.155.0
20 Jan 2026
2 views
Patched
HIGH
CVE-2024-0084
Path Traversal in NVIDIA Triton Inference Server Allows Unauthorized Model Access and Overwrite
NVIDIA Triton Inference Server < 24.01
NVIDIA Triton Inference Server < 2.42.0
5 Sept 2025
2 views
Patched
CRITICAL
Malicious Model on Hugging Face Hub Leverages Unsafe Pickle Deserialization for Remote Code Execution
PyTorch
Hugging Face Transformers
Any application using torch.load on untrusted models
10 Feb 2025
65 views
Unpatched
HIGH
Indirect Prompt Injection in Autonomous AI Agents Leads to Data Exfiltration and Unauthorized Actions
LangChain Agents
LlamaIndex Agents
AutoGPT
Custom-built RAG systems
+1 more
22 July 2025
5 views
Unpatched
CRITICAL
CVE-2023-29374
Arbitrary Code Execution in LangChain via Deserialization of Malicious PALChain Prompts
LangChain < 0.0.171
15 Apr 2025
2 views
Patched
HIGH
CVE-2025-45882
Cross-Tenant Data Leakage in AWS Bedrock's Custom Model Fine-Tuning Service
AWS Bedrock
18 Nov 2025
3 views
Patched
HIGH
Context-Aware Backdoor Injection via Manipulated GitHub Copilot Suggestions
GitHub Copilot
5 Sept 2025
3 views
Unpatched
CRITICAL
CVE-2026-11234
NVIDIA Triton Inference Server Custom Python Backend Deserialization Leads to RCE
NVIDIA Triton Inference Server < 2.50.0
10 Feb 2026
5 views
Patched
CRITICAL
CVE-2025-34059
Malicious PyPI Package 'torch-ops-ext' Steals AWS Credentials and Model Weights
Python developers using PyPI
22 July 2025
4 views
Patched
CRITICAL
CVE-2025-28113
Remote Code Execution via Indirect Prompt Injection in LangChain's SQLDatabaseChain
LangChain <= 0.2.5
15 Apr 2025
4 views
Patched
CRITICAL
CVE-2023-36004
Server-Side Request Forgery in Azure OpenAI 'On Your Data' Feature Enables Cloud Credential Exfiltration
Microsoft Azure OpenAI Service ('On Your Data' feature)
5 Nov 2025
2 views
Patched