AI
Breaking Wire
Content
Ecosystem
Community
Pricing
AI Vulnerability Database
916 vulnerabilities tracked — CVEs, prompt injection, model exploits.
HIGH
CVE-2024-0090
NVIDIA GPU Driver Kernel Mode Layer Flaw Allows for Privilege Escalation in Multi-Tenant AI Clusters
NVIDIA Linux GPU Driver versions prior to 555.42.02
Containerized GPU workloads in multi-tenant Kubernetes
Cloud AI platforms utilizing affected driver versions
3 Nov 2025
4 views
Patched
Previous
Page 46 of 77
Next
HIGH
GitHub Copilot Exfiltration via Manipulated Autocomplete Context from Third-Party Dependencies
GitHub Copilot VS Code Extension < 1.195.0
GitHub Copilot CLI < 0.8.0
3 Nov 2025
20 views
Patched
HIGH
Cross-Tenant Data Leakage in AWS Bedrock due to Model Customization Cache Collision
AWS Bedrock (fine-tuned Claude 2 models)
30 Oct 2025
7 views
Patched
CRITICAL
Credential Exfiltration via Malicious PyPI Package 'torch-optimizer'
Python developer environments
CI/CD systems installing PyPI packages
22 Oct 2025
0 views
Patched
MEDIUM
LLM Data Exfiltration via Base64-Encoded SVG Image Payloads Bypasses Content Filters
GPT-4-based applications
Claude 3-based applications
Llama 3-based applications
LLM-integrated web applications
22 Oct 2025
0 views
Unpatched
HIGH
Hugging Face Hub Privilege Escalation Vulnerability Allows Poisoning of Private Models
huggingface.co platform
22 Oct 2025
0 views
Patched
HIGH
Indirect Prompt Injection in LangChain ReAct Agents via Poisoned Web Content
LangChain < 0.2.0
22 Oct 2025
0 views
Patched
HIGH
Indirect Prompt Injection in LangChain ReAct Agents via Malicious Web Content
LangChain < 0.1.0 (agents using web browsing tools)
22 Oct 2025
0 views
Unpatched
CRITICAL
Leaky-Vessel: Silent Code Execution via Malicious Pickled Models on Hugging Face Hub
Hugging Face Hub
PyTorch < 2.1
Any system loading models via unsafe `pickle` deserialization
20 Oct 2025
11 views
Patched
HIGH
Data Exfiltration from AI Agents via Indirect Prompt Injection in Unstructured Data
AI-powered email clients
Web scraping agents
Customer support chatbots
Document analysis tools
15 Oct 2025
0 views
Unpatched
CRITICAL
CVE-2023-49586
Hugging Face Hub Safetensors Conversion Leads to Remote Code Execution
Hugging Face Hub platform infrastructure
9 Oct 2025
1 views
Patched
CRITICAL
Arbitrary Code Execution via Maliciously Crafted `pytorch_model.bin` on Hugging Face Hub
Hugging Face Hub
PyTorch
transformers
8 Oct 2025
5 views
Patched