AIBreaking Wire
Pricing
AI Breaking Wire

The pulse of artificial intelligence — breaking news, security, tools, and platform tracking, refreshed every four hours by an AI newsroom.

Last build · 2026-07-22

The AI Brief

Free weekly digest — top AI news, tools, and security alerts.

Explore

  • News
  • Tools
  • Jobs
  • Merch
  • Webinars
  • Dashboards

Community

  • Discord
  • Projects
  • Marketplace
  • Claude Code
  • Events

Security

  • Security Hub
  • Vulnerability DB
  • Security News
  • Challenges

Company

  • About
  • Live Edition
  • Editorial Desks
  • Your Feed
  • Contact
  • Pricing
  • Advertise
  • Forge Portal
  • Editorial Policy
  • Privacy
  • Terms

Developers

  • API Docs
  • API Keys

Connect

  • Discord
  • Twitter / X
  • GitHub
  • Newsletter
  • Newsletter Archive
  • RSS Feeds

© 2026 AI Breaking Wire · Editorial standards uphold accuracy and AI transparency · See Editorial Policy and Privacy.

Press tip line: [email protected]

AI Vulnerability Database

905 vulnerabilities tracked — CVEs, prompt injection, model exploits.

CRITICALCVE-2024-27444

Remote Code Execution in LangChain via Unsanitized Shell Tool Input from LLM

langchain < 0.1.20
28 June 20262 viewsPatched
CRITICALCVE-2026-28119

Remote Code Execution in LlamaIndex via Deserialization of Malicious Tool Output

PreviousPage 7 of 76Next
LlamaIndex < 0.10.50
25 June 20260 viewsPatched
CRITICALCVE-2026-35228

Cross-Tenant Data Exfiltration in Azure OpenAI Studio via WebSocket Manipulation

Azure OpenAI Studio
25 June 20261 viewsPatched
CRITICAL

Credential Exfiltration via Malicious PyPI Package 'torch-optimizer' Targeting AI Developers

Python Package Index (PyPI)
25 June 20261 viewsPatched
CRITICAL

Malicious PyPI Package 'torch-utils-nightly' Steals Cloud Credentials from AI Developer Environments

Python developer environmentsCI/CD pipelines for ML projects
25 June 20261 viewsPatched
HIGH

Malicious PyPI Package 'torch-utils-extra' Steals Hugging Face and AWS Credentials

Developers who installed the 'torch-utils-extra' PyPI package
25 June 20261 viewsPatched
CRITICALCVE-2026-19842

NVIDIA Triton Inference Server Remote Code Execution via Malformed Model Configuration

NVIDIA Triton Inference Server < 2.65.0
25 June 20261 viewsPatched
CRITICAL

Remote Code Execution via Deserialization of Maliciously Crafted Agent State in LangChain

LangChain < 0.3.5
25 June 20261 viewsPatched
CRITICAL

Malicious Model on Hugging Face Hub Leads to Remote Code Execution via Unsafe Deserialization

PyTorch < 2.3Hugging Face Hub (users downloading untrusted models)
25 June 20261 viewsUnpatched
CRITICAL

Remote Code Execution via Malicious Pickle Deserialization in Community-Uploaded Hugging Face Models

PyTorch usersHugging Face Transformers usersAny system loading .bin, .pkl, or .pth files from untrusted sources
25 June 20262 viewsUnpatched
CRITICAL

Malicious Code Execution via Poisoned Hugging Face Model Weights Using Unsafe Deserialization

PyTorch < 2.1Hugging Face Transformers (when loading models with `torch.load` from untrusted sources)
25 June 20266 viewsPatched
CRITICAL

LangChain SQL Agent Vulnerable to Natural Language SQL Injection leading to Data Exfiltration

LangChain <0.1.20langchain-community <0.0.30
25 June 20268 viewsPatched