AI
Breaking Wire
Content
Ecosystem
Community
Pricing
AI Vulnerability Database
490 vulnerabilities tracked — CVEs, prompt injection, model exploits.
CRITICAL
CVE-2023-29374
Remote Code Execution in LangChain `LLMMathChain` via Insecure `eval()`
LangChain < 0.0.190
15 Feb 2025
14 views
Patched
HIGH
Credential Exfiltration from AI Coding Assistants via Indirect Prompt Injection in Fetched Web Content
Previous
Page 31 of 41
Next
GitHub Copilot
Cursor IDE
Claude Code
Other AI coding assistants with web browsing
30 Sept 2025
12 views
Unpatched
HIGH
CVE-2023-31032
GPU Memory Isolation Bypass Across Pods in Multi-Tenant Kubernetes Clusters
NVIDIA GPU Driver < 550.x.x
NVIDIA Container Toolkit < 1.15.0
Kubernetes NVIDIA Device Plugin
5 Nov 2025
14 views
Patched
CRITICAL
Arbitrary Code Execution via Poisoned Model Weights on Hugging Face Hub Using Unsafe `pickle` Deserialization
Hugging Face Transformers
PyTorch
Hugging Face Hub
15 Jan 2026
16 views
Unpatched
HIGH
Cross-Tenant Data Leakage in Multi-User RAG Applications via Misconfigured Azure AI Search Security Filters
Azure AI Search
Microsoft Semantic Kernel
LangChain (with Azure AI Search retriever)
22 July 2025
14 views
Unpatched
CRITICAL
CVE-2023-29374
Remote Code Execution in LangChain via Unsafe Python `eval()` in `LLMMathChain`
LangChain < 0.0.171
12 Apr 2025
13 views
Patched
HIGH
Stored Indirect Prompt Injection in Azure OpenAI RAG via Poisoned Vector Database Content
Azure OpenAI Service (when used with RAG)
Azure AI Search (formerly Cognitive Search)
GCP Vertex AI Search
AWS Bedrock with Knowledge Bases
30 July 2025
34 views
Unpatched
HIGH
Cross-File Context Ingestion in GitHub Copilot enables Private Code and Secret Exfiltration
GitHub Copilot for VS Code
GitHub Copilot for JetBrains
Cursor IDE
11 Feb 2026
16 views
Unpatched
CRITICAL
NVIDIA GPU Driver Memory Corruption Allows Container Escape in Multi-Tenant ML Environments
NVIDIA GPU Driver versions 535.x before 535.154.01
NVIDIA GPU Driver versions 550.x before 550.54.14
18 Sept 2025
6 views
Patched
CRITICAL
Indirect Prompt Injection in LangChain ReAct Agents via Web Content Allows Arbitrary Tool Execution
LangChain 0.1.x
LangChain 0.2.x
15 Apr 2025
6 views
Unpatched
HIGH
CVE-2025-29812
SSRF in Azure OpenAI 'On Your Data' Feature Exposes Internal Network Services
Azure OpenAI Service ('On Your Data' feature)
22 July 2025
6 views
Patched
HIGH
CVE-2025-1077
NVIDIA CUDA Driver Use-After-Free Vulnerability Allows Privilege Escalation in Multi-Tenant GPU Clusters
NVIDIA GPU Driver (Linux) 535.x before 535.161.09
NVIDIA GPU Driver (Linux) 550.x before 550.54.15
11 Mar 2025
6 views
Patched