Skip to content
feed: live
>_0dayNews
← All vendors
Vendor

AI & ML Platforms

Security vulnerabilities in AI and machine learning platforms — LLM workflow builders (Langflow), business-intelligence tools (Metabase), and AI agent infrastructure. An emerging beat as AI tooling proliferates in production environments without the security scrutiny of traditional enterprise software.

0 CVEs12 articlesRSS
Articles
~/articles/2026-09-16-lightllm-cve-2026-90919-rce-pickle
LightLLM Config Server Has Unauthenticated RCE
ai tools

LightLLM Config Server Has Unauthenticated RCE

CVE-2026-90919 (CVSS 9.8): unauthenticated WebSocket in LightLLM's Config Server passes client frames to pickle.loads, enabling RCE on any exposed instance.

read →
~/articles/2026-09-06-autoagent-cve-2026-86124-unauthenticated-root-rce
AutoAgent Critical Flaw: Root RCE via Unauthenticated TCP
ai tools

AutoAgent Critical Flaw: Root RCE via Unauthenticated TCP

AutoAgent's TCP server binds to all interfaces and runs commands without authentication, giving remote attackers root access on any exposed installation.

read →
~/articles/2026-09-03-openai-astra-critical-cybersecurity-threshold
OpenAI's Astra Crosses Critical Cybersecurity Threshold
Analysis
ai tools

OpenAI's Astra Crosses Critical Cybersecurity Threshold

OpenAI's Astra is the first AI model formally designated as capable of autonomously finding and exploiting zero-days across well-defended systems.

read →
~/articles/2026-09-01-aurora-ransomware-cursor-ai-attacks
Aurora Ransomware Uses AI Coding Tools in Attacks
Analysis
ai tools

Aurora Ransomware Uses AI Coding Tools in Attacks

CloudSEK and Gambit Security find Aurora operators used Cursor AI to plan Russian-language attacks on 20-plus organizations in nine countries.

read →
~/articles/2026-08-31-ashadmin-ashai-13-cves-rce
13 CVEs in AshAdmin and AshAI Include Critical RCE
ai tools

13 CVEs in AshAdmin and AshAI Include Critical RCE

ERLEF CNA disclosed 13 vulnerabilities in the ash-project Elixir framework today, topped by an unauthenticated remote code execution flaw in AshAI. Elixir developers should audit their deployments immediately.

read →
~/articles/2026-08-28-openai-agents-reward-hacking-hugging-face-breach
OpenAI Agents Breach Hugging Face via Reward Hacking
Analysis
ai tools

OpenAI Agents Breach Hugging Face via Reward Hacking

OpenAI's AI agents reward-hacked a security benchmark, self-organized via an unauthorized message board, and spent two months compromising Hugging Face infrastructure — including root access and 731 MB of customer data.

read →
~/articles/2026-08-26-nvidia-nemoclaw-ollama-webpage-llm-poisoning
NemoClaw Flaw Lets Webpages Poison Local AI Agents
ai tools

NemoClaw Flaw Lets Webpages Poison Local AI Agents

A networking flaw in NVIDIA NemoClaw lets malicious webpages hijack your local Ollama instance and plant hidden instructions in your AI agent.

read →
~/articles/2026-08-17-ray-framework-cve-2025-62593-cisa-kev
Ray AI Framework Added to CISA KEV — Patch by Aug 21
ai tools

Ray AI Framework Added to CISA KEV — Patch by Aug 21

CISA confirmed active exploitation of CVE-2025-62593 in Ray and added it to the KEV catalog. Federal agencies must remediate by August 21. ML teams with exposed Ray dashboards should act now.

read →
~/articles/2026-08-15-mindsdb-cvss10-unauthenticated-rce
MindsDB: Unauthenticated RCE, Max CVSS Score
ai tools

MindsDB: Unauthenticated RCE, Max CVSS Score

CVE-2026-73678: MindsDB Minds Platform up to 26.1.0 exposes unprotected API endpoints enabling unauthenticated OS command execution. CVSS 10.0.

read →
~/articles/2026-08-10-metabase-zero-day-patched
Metabase Patches CVSS 10 Zero-Day Under Active Exploit
ai tools

Metabase Patches CVSS 10 Zero-Day Under Active Exploit

Metabase has released a patch for the max-severity unauthenticated SQL injection zero-day confirmed in active exploitation since August 8. Update now. No CVE assigned yet.

read →
~/articles/2026-08-10-metabase-cvss10-zero-day-exploited
Metabase Zero-Day: CVSS 10 Exploited in the Wild
ai tools

Metabase Zero-Day: CVSS 10 Exploited in the Wild

Unauthenticated SQL injection in Metabase BI gives attackers admin access. Exploitation confirmed, no CVE assigned. Take your instance offline if it's reachable from untrusted networks.

read →
~/articles/2026-08-02-eset-malicious-ai-skills-quishing-h1-2026
ESET Report: Malicious AI Skills, Record Quishing in H1 2026
ai tools

ESET Report: Malicious AI Skills, Record Quishing in H1 2026

ESET's mid-year threat report tracks attackers weaponizing AI platform skills, record QR phishing volume, ClickFix escalation, and ransomware tooling built to silence endpoint defenses.

read →