AI
Breaking Wire
Content
Ecosystem
Community
Pricing
AI Vulnerability Database
490 vulnerabilities tracked — CVEs, prompt injection, model exploits.
CRITICAL
Arbitrary Code Execution via Malicious PyTorch Model on Hugging Face Hub
Hugging Face Transformers
PyTorch
Any system loading models via `pickle` or `torch.load`
10 Nov 2025
33 views
Unpatched
HIGH
Previous
Page 30 of 41
Next
Indirect Prompt Injection in AI Agents via Unsanitized Web Content Leading to Data Exfiltration
LangChain agents
LlamaIndex RAG pipelines
AutoGPT
Web-browsing AI assistants
22 June 2025
24 views
Unpatched
CRITICAL
CVE-2025-42791
Remote Code Execution via Insecure Deserialization in LangChain `load_chain`
LangChain < 0.3.5
15 Apr 2025
2 views
Patched
CRITICAL
CVE-2026-1138
NVIDIA Driver Use-After-Free Allows Container Escape in GPU-Accelerated Kubernetes
NVIDIA Linux GPU Driver < 550.99.01
NVIDIA Linux GPU Driver < 555.77.02
18 Feb 2026
13 views
Patched
CRITICAL
Azure OpenAI Service Cross-Tenant Data Leakage via Insecure Caching of Fine-Tuning Datasets
Azure OpenAI Service (East US, West Europe regions)
10 Nov 2025
19 views
Patched
HIGH
GitHub Copilot Workspace Exfiltration via Manipulated Project Context
GitHub Copilot for VS Code < 1.190.0
GitHub Copilot for JetBrains < 1.6.0
30 July 2025
15 views
Patched
CRITICAL
Malicious PyTorch Model on Hugging Face Hub Executes Code on Load via Unsafe Deserialization
transformers < 4.40.0
torch < 2.3.0
2 Sept 2025
5 views
Patched
CRITICAL
Indirect Prompt Injection in LangChain ReAct Agent Allows Arbitrary Tool Execution
LangChain < 0.2.0
15 Apr 2025
5 views
Patched
HIGH
CVE-2023-25516
Use-After-Free in NVIDIA CUDA Driver Allows Local Privilege Escalation
NVIDIA Linux GPU Driver < 535.129.03
NVIDIA DGX Systems
Kubernetes clusters with GPU nodes
30 Nov 2025
11 views
Patched
HIGH
GitHub Copilot Suggestion-based Secret Exfiltration via Public Repository Poisoning
GitHub Copilot
Amazon CodeWhisperer
Tabnine
Cursor IDE
5 Jan 2026
12 views
Unpatched
HIGH
Indirect Prompt Injection in AI Agents via Unsanitized Web Content
AI-powered web browsers
Autonomous AI agents
Email summarization tools
Document analysis chatbots
10 Sept 2025
11 views
Unpatched
CRITICAL
Arbitrary Code Execution via Malicious `pickle` Payload in Hugging Face Models
PyTorch < 2.1
Hugging Face Hub
TensorFlow < 2.13
20 May 2025
6 views
Patched