AI
Breaking Wire
Content
Ecosystem
Community
Pricing
AI Vulnerability Database
490 vulnerabilities tracked — CVEs, prompt injection, model exploits.
CRITICAL
Malicious PyPI Package 'torch-optimizer-utils' Steals Cloud and AI Service Credentials
Python developers using PyPI
20 June 2025
2 views
Patched
HIGH
Indirect Prompt Injection in LangChain ReAct Agents Allows Arbitrary Tool Execution
LangChain <= 0.1.20
Previous
Page 17 of 41
Next
15 Feb 2025
2 views
Patched
HIGH
SSRF in GCP Vertex AI 'Bring Your Own Data' Feature Allows Internal Network Scanning
GCP Vertex AI
Azure AI Services
AWS Bedrock
15 Mar 2026
2 views
Patched
HIGH
LLM Data Exfiltration via Indirect Prompt Injection in Markdown Image Rendering
AI-powered email assistants
Customer support chatbots
RAG systems processing external documents
30 Jan 2026
1 views
Unpatched
HIGH
CVE-2025-10773
NVIDIA GPU Driver Kernel Mode Layer Allows Privilege Escalation
NVIDIA GPU Driver (Linux) < 550.76
NVIDIA GPU Driver (Linux) < 545.92
NVIDIA GPU Driver (Linux) < 535.154
5 Sept 2025
2 views
Patched
CRITICAL
Arbitrary Code Execution via Poisoned Model on Hugging Face Hub
Hugging Face Hub
PyTorch < 2.4
Transformers library (any version loading pickled models)
21 July 2025
2 views
Unpatched
MEDIUM
Data Extraction via Targeted Fine-tuning Attack on AWS Bedrock Titan Models
AWS Bedrock (Amazon Titan Text G1 - Lite)
AWS Bedrock (Amazon Titan Text G1 - Express)
10 Sept 2025
2 views
Unpatched
HIGH
CVE-2023-25515
NVIDIA CUDA Driver Out-of-Bounds Read in cuBLAS GEMM Kernel Causes Host Denial-of-Service
NVIDIA Linux Driver < 550.54.14
NVIDIA Windows Driver < 551.61
28 Jan 2026
2 views
Patched
HIGH
GitHub Copilot Vulnerable to Indirect Prompt Injection via Malicious Documentation Files
GitHub Copilot for VS Code
GitHub Copilot for JetBrains
Cursor IDE
5 Nov 2025
2 views
Unpatched
CRITICAL
Malicious PyPI Package 'torch-optimizer' Steals Hugging Face API Tokens and AWS Credentials
torch-optimizer==1.2.1
22 July 2025
2 views
Patched
CRITICAL
SQL Prompt Injection in LangChain SQLDatabaseChain Allows Unauthorized Database Access
LangChain < 0.1.0
15 Feb 2025
2 views
Patched
HIGH
GitHub Copilot Workspace Context Leak via Malicious Code Snippet Suggestion
GitHub Copilot (VS Code Extension)
JetBrains AI Assistant
Amazon CodeWhisperer
10 Mar 2026
2 views
Unpatched