AI
Breaking Wire
Content
Ecosystem
Community
Pricing
AI Vulnerability Database
905 vulnerabilities tracked — CVEs, prompt injection, model exploits.
CRITICAL
Critical SQL Injection in LangChain Experimental SQL Agent via Natural Language Query Manipulation
langchain>=0.1.15, <0.2.8
langchain-experimental>=0.0.50, <0.0.62
25 June 2026
9 views
Patched
CRITICAL
Remote Code Execution in LangChain SQLDatabaseChain via Unsanitized LLM Output
Previous
Page 8 of 76
Next
LangChain <0.2.11
25 June 2026
9 views
Patched
HIGH
Indirect Prompt Injection in AI Email Assistants Leads to Sensitive Data Exfiltration
AI-powered email summary agents
Custom applications using LLMs to process untrusted third-party data
Systems using ReAct agents on web content
20 June 2026
1 views
Unpatched
CRITICAL
CVE-2026-21513
Server-Side Request Forgery (SSRF) in AWS Bedrock Agents via Custom Tool OpenAPI Schema
AWS Bedrock Agents (prior to June 2026 patch)
20 June 2026
11 views
Patched
CRITICAL
Malicious PyPI Package 'torch-utils' Steals Hugging Face API Tokens and Credentials
Python developers using PyPI
20 June 2026
13 views
Patched
CRITICAL
CVE-2024-27497
Arbitrary Code Execution in LangChain via Maliciously Crafted Python Tool Docstrings
langchain < 0.1.9
langchain-experimental < 0.0.48
20 June 2026
13 views
Patched
HIGH
CVE-2026-30177
Cross-Tenant Data Exfiltration in Azure OpenAI via Misconfigured Service Tag Routing
Azure OpenAI Service with Private Endpoints configured before May 2026
20 June 2026
15 views
Patched
CRITICAL
Multi-Modal Indirect Prompt Injection in Cloud AI Vision APIs via OCR
Azure OpenAI Service (GPT-4o deployments)
Google Cloud Vertex AI (Gemini 1.5 Pro Vision API)
AWS Bedrock (Claude 3 Sonnet/Opus with Vision)
20 June 2026
15 views
Unpatched
HIGH
Cross-Tenant Data Exposure in AWS Bedrock Model Customization Jobs
AWS Bedrock (Model Customization Feature)
20 June 2026
12 views
Patched
CRITICAL
CVE-2026-31045
Cross-Tenant Data Exposure in Azure AI Search via Managed RAG Service
Azure OpenAI On Your Data (before June 2026 patch)
20 June 2026
12 views
Patched
HIGH
CVE-2026-56340
vLLM Multimodal Embeddings: Sparse Tensor Validation Bypass Leading to DoS/RCE
vLLM (versions 0.10.2 to 0.12.9)
20 June 2026
22 views
Patched
CRITICAL
CVE-2026-19845
NVIDIA Triton Inference Server Container Escape via Malformed Model Configuration
NVIDIA Triton Inference Server 24.01
NVIDIA Triton Inference Server 24.02
NVIDIA Triton Inference Server 24.03
19 June 2026
0 views
Patched