AI
Breaking Wire
Content
Ecosystem
Community
Pricing
AI Vulnerability Database
911 vulnerabilities tracked — CVEs, prompt injection, model exploits.
CRITICAL
Cross-Tenant Data Exfiltration in Microsoft AI Studio via SSRF and Insecure Instance ID Handling
Microsoft Azure AI Studio
Microsoft Azure Machine Learning
29 Jan 2026
9 views
Patched
HIGH
Indirect Prompt Injection in GitHub Copilot Leads to Vulnerable Code Suggestion
Previous
Page 28 of 76
Next
GitHub Copilot (all versions with context from open files)
29 Jan 2026
21 views
Unpatched
HIGH
CVE-2024-0072
Privilege Escalation in NVIDIA GPU Driver via Improper Input Validation in Kernel Mode Layer
NVIDIA GPU Display Driver (Linux) < 550.40.07
NVIDIA GPU Display Driver (Linux) < 545.29.06
NVIDIA GPU Display Driver (Linux) < 535.154.05
28 Jan 2026
1 views
Patched
HIGH
Server-Side Request Forgery in Azure OpenAI 'On Your Data' via Manipulated Data Source References
Azure OpenAI Service
28 Jan 2026
3 views
Unpatched
HIGH
GitHub Copilot Enterprise Suggests Insecure Code for Internal APIs, Leading to Authorization Bypass
GitHub Copilot Enterprise
28 Jan 2026
4 views
Unpatched
HIGH
CVE-2023-25515
NVIDIA CUDA Driver Out-of-Bounds Read in cuBLAS GEMM Kernel Causes Host Denial-of-Service
NVIDIA Linux Driver < 550.54.14
NVIDIA Windows Driver < 551.61
28 Jan 2026
5 views
Patched
HIGH
Cross-Tenant Resource Manipulation in Azure OpenAI Service via API Authorization Bypass
Azure OpenAI Service
28 Jan 2026
10 views
Patched
HIGH
CVE-2024-0071
NVIDIA GPU Driver Use-After-Free Vulnerability Allows for Privilege Escalation in ML Workloads
NVIDIA GPU Display Driver for Linux < 550.40.07
NVIDIA GPU Display Driver for Linux < 545.29.06
NVIDIA CUDA Toolkit (when used with vulnerable drivers)
28 Jan 2026
6 views
Patched
MEDIUM
Indirect Prompt Injection in AI Coding Assistants via Malicious Open-Source Code
GitHub Copilot
Cursor IDE
Amazon CodeWhisperer
28 Jan 2026
10 views
Unpatched
CRITICAL
Cross-Tenant Instance Takeover in Azure Machine Learning Compute
Azure Machine Learning Compute Instances
22 Jan 2026
1 views
Patched
HIGH
Server-Side Request Forgery (SSRF) in AWS Bedrock Agents via Manipulated Tool Input
AWS Bedrock Agents
22 Jan 2026
2 views
Unpatched
MEDIUM
GitHub Copilot Suggests Insecure JWT Verification Code, Allowing Authentication Bypass
GitHub Copilot
OpenAI Codex
Amazon CodeWhisperer
22 Jan 2026
9 views
Unpatched