AIBreaking Wire
Pricing
AI Breaking Wire

The pulse of artificial intelligence — breaking news, security, tools, and platform tracking, refreshed every four hours by an AI newsroom.

Last build · 2026-07-23

The AI Brief

Free weekly digest — top AI news, tools, and security alerts.

Explore

  • News
  • Tools
  • Jobs
  • Merch
  • Webinars
  • Dashboards

Community

  • Discord
  • Projects
  • Marketplace
  • Claude Code
  • Events

Security

  • Security Hub
  • Vulnerability DB
  • Security News
  • Challenges

Company

  • About
  • Live Edition
  • Editorial Desks
  • Your Feed
  • Contact
  • Pricing
  • Advertise
  • Forge Portal
  • Editorial Policy
  • Privacy
  • Terms

Developers

  • API Docs
  • API Keys

Connect

  • Discord
  • Twitter / X
  • GitHub
  • Newsletter
  • Newsletter Archive
  • RSS Feeds

© 2026 AI Breaking Wire · Editorial standards uphold accuracy and AI transparency · See Editorial Policy and Privacy.

Press tip line: [email protected]

AI Vulnerability Database

932 vulnerabilities tracked — CVEs, prompt injection, model exploits.

HIGHCVE-2023-6958

MLflow Path Traversal Vulnerability Allows Arbitrary File Write and RCE

MLflow Server < 2.8.1
5 June 20251 viewsPatched
MEDIUM

GitHub Copilot Suggests Verifiably Insecure Code and Leaks Secrets

PreviousPage 63 of 78Next
GitHub Copilot
5 June 202511 viewsUnpatched
CRITICALCVE-2023-4863

Heap Buffer Overflow in libwebp allows RCE in ML Container Images

NVIDIA NGC Containers (e.g., pytorch, tensorflow) prior to patchOfficial TensorFlow and PyTorch Docker imagesAny containerized ML workload using a vulnerable version of libwebp
3 June 20255 viewsPatched
CRITICALCVE-2023-29374

Remote Code Execution in LangChain PALChain via Crafted Mathematical Prompts

langchain < 0.0.171
28 May 202513 viewsPatched
CRITICAL

Remote Code Execution via Maliciously Crafted PyTorch Models on Hugging Face Hub

PyTorchHugging Face TransformersAny system loading untrusted `.bin` or `.pkl` model files
20 May 20251 viewsUnpatched
CRITICALCVE-2023-29374

Arbitrary Code Execution in LangChain via Unsandboxed Python REPL Tool

LangChain <0.0.171
20 May 20258 viewsPatched
CRITICAL

Malicious PyPI Package `torch-optimizer` Steals Cloud Credentials from AI Developer Environments

PyPI Registry usersPython developers
20 May 20253 viewsPatched
HIGH

Indirect Prompt Injection in GitHub Copilot Workspace via Malicious Markdown Files

GitHub Copilot (versions with workspace indexing prior to Q3 2025 patches)Cursor IDE (all versions before 0.28.0)
20 May 20254 viewsPatched
HIGH

Indirect Prompt Injection in AI Email Assistants via Third-Party Content Retrieval

AI Email AssistantsAI Agents with Web Browsing ToolsRetrieval-Augmented Generation (RAG) Systems
20 May 20256 viewsUnpatched
CRITICAL

Remote Code Execution in LangChain ReAct Agent via Improperly Sanitized Tool Input

LangChain 0.1.x before 0.1.18LangChain 0.2.x before 0.2.5
20 May 20255 viewsPatched
CRITICAL

Malicious PyPI Package 'torch-inspector' Steals Cloud Credentials and SSH Keys

PyPI ecosystempip
20 May 20255 viewsPatched
CRITICALCVE-2023-49080

Malicious PyPI Package 'torchtriton' Exfiltrates Sensitive Data from AI Development Environments

Python developers using PyPI
20 May 20255 viewsPatched