ML CVEs
ML CVEs ml cves · vulnerability tracking upd. 2026-08
// reference archive

The CVEs in your ML stack.

A focused tracker for CVEs in ML and AI infrastructure. PyTorch, TensorFlow, ONNX, vLLM, llama.cpp, transformers, langchain, LlamaIndex, model registries, and the broader AI/ML supply chain — dated, sourced to NVD or vendor advisory.

Enter the archive →

Latest entries

// index10 of 18 entries

AI Bill of Materials Tools: AIBOM Formats and Generators

tools

AI CVEs in CISA KEV: Ray, LiteLLM, and What's Missing

Vulnerability Tra…

Inference Server CVEs: vLLM, Ollama, llama.cpp, Triton

Vulnerability Tra…

MLflow CVEs: Why 2.14.1 Still Fails Your Scanner

Vulnerability Tra…

Model File Format Security: Pickle, Safetensors, GGUF

Vulnerability Tra…

ML Model CVE Tracking: How to Monitor Your AI Stack

Guides

Malicious Model File Detection: Auditing ML Models

ML Security

ML Vulnerability Scanner Software: Static vs Dynamic Tools

Tools

Hugging Face Model Supply Chain Risk: Pickle Backdoors

supply-chain

TensorFlow Security Vulnerabilities 2026: CVEs and Supply Chain

ML Security

See all 18 entries →

Start here

The reference pages this site keeps current, whatever is newest above.

Independent, specialist, and free to read

ML CVEs publishes focused, sourced guides on a single topic. No paywall, no account, no ad tracking.

Subscribe

ML CVEs — in your inbox

CVEs in ML libraries, frameworks, and the AI/ML supply chain. Sent only when there is something worth sending.

No spam. Unsubscribe anytime.