AI
Breaking Wire
Content
Ecosystem
Community
Pricing
AI Vulnerability Database
926 vulnerabilities tracked — CVEs, prompt injection, model exploits.
HIGH
LLM Output Manipulation for Malicious Code Generation via Adversarial Prompt Chaining
OmniText 7B
ChronoGPT
LLM-based code generation tools
28 July 2025
4 views
Unpatched
HIGH
Indirect Prompt Injection Leading to Data Exfiltration in LLM-Powered Applications
Previous
Page 57 of 78
Next
Any LLM-integrated application that processes untrusted external data (e.g., web pages, documents, emails)
22 July 2025
0 views
Unpatched
CRITICAL
Malicious Model Execution via Unsafe Deserialization in Hugging Face Transformers
PyTorch
Hugging Face Transformers
Any application loading pickled model files
22 July 2025
1 views
Unpatched
CRITICAL
CVE-2023-27776
Malicious PyPI Package 'torchtriton' Steals Sensitive Developer Data
Python developer environments
CI/CD pipelines installing PyPI packages
22 July 2025
1 views
Patched
CRITICAL
Code Execution via Poisoned Model Weights in Hugging Face Hub TensorFlow/Keras Models
Hugging Face Transformers
TensorFlow
PyTorch
Any system loading models via pickle
22 July 2025
3 views
Unpatched
CRITICAL
Remote Code Execution via Malicious Model Weights on Hugging Face Hub
huggingface-hub
transformers
pytorch
tensorflow
22 July 2025
3 views
Unpatched
CRITICAL
Malicious PyPI Package 'torch-utils' Steals AWS Credentials and SSH Keys from AI Developers
Python developer environments
PyPI registry
22 July 2025
3 views
Patched
CRITICAL
Malicious PyPI Package `torch-optimizer` Steals Cloud and Git Credentials from AI/ML Environments
Python developer environments
CI/CD pipelines for AI/ML projects
22 July 2025
4 views
Unpatched
HIGH
GitHub Copilot Suggests Insecure AWS S3 Bucket Policies Leading to Public Data Exposure
GitHub Copilot
22 July 2025
6 views
Patched
HIGH
Indirect Prompt Injection in Autonomous AI Agents Leads to Data Exfiltration and Unauthorized Actions
LangChain Agents
LlamaIndex Agents
AutoGPT
Custom-built RAG systems
+1 more
22 July 2025
10 views
Unpatched
CRITICAL
CVE-2025-34059
Malicious PyPI Package 'torch-ops-ext' Steals AWS Credentials and Model Weights
Python developers using PyPI
22 July 2025
10 views
Patched
CRITICAL
Malicious PyPI Package 'torch-optimizer' Steals Hugging Face API Tokens and AWS Credentials
torch-optimizer==1.2.1
22 July 2025
5 views
Patched