aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
7,866
[LAST_24H]
2
[LAST_7D]
231
Daily BriefingSunday, September 27, 2026
>

Comprehensive Survey Maps AI Auditing Landscape: A new academic survey consolidates existing frameworks, principles, and methodologies used to audit AI systems for safety, fairness, and reliability, providing practitioners with a structured overview of current evaluation approaches.

Latest Intel

page 45/787
VIEW ALL
01

What execs and politicians are saying about slowing down AI development

policysafety
Critical This Week5 issues
critical

CVE-2026-84462: Zammad is a web based open source helpdesk/customer support system. Prior to 7.1.2, a security filter that protects Zamm

CVE-2026-84462NVD/CVE DatabaseSep 25, 2026
Sep 25, 2026
Sep 14, 2026

Anthropic CEO Dario Amodei published an essay arguing that AI development should be slowed down for safety reasons, and other AI leaders and politicians have responded with support or opposition to his ideas. Amodei's proposal includes three steps for pacing AI development: using independent third-party evaluators (external reviewers who aren't part of the company) to check if companies are following safety practices, and coordination between major AI companies in democratic countries on standards.

The Verge (AI)
02

CVE-2026-12767: IBM Langflow OSS 1.0.0 through 1.11.5 is vulnerable to server-side request forgery (SSRF). This may allow an unauthentic

security
Sep 14, 2026

IBM Langflow OSS versions 1.0.0 through 1.11.5 contain a server-side request forgery vulnerability (SSRF, a flaw that lets attackers trick the server into making unauthorized requests on their behalf). An attacker without authentication could exploit this to probe the network or launch further attacks.

NVD/CVE Database
03

CVE-2026-12766: IBM Langflow OSS 1.0.0 through 1.11.2 is vulnerable to server-side request forgery (SSRF). This may allow an authenticat

security
Sep 14, 2026

IBM Langflow OSS versions 1.0.0 through 1.11.2 contain a server-side request forgery vulnerability (SSRF, a flaw where an attacker tricks the server into making unwanted network requests). An authenticated attacker (someone with valid login credentials) could exploit this to send unauthorized requests from the system, potentially discovering network information or launching further attacks.

NVD/CVE Database
04

CVE-2026-12765: IBM Langflow OSS 1.0.0 through 1.10.2 is vulnerable to server-side request forgery (SSRF). This may allow an unauthentic

security
Sep 14, 2026

IBM Langflow OSS versions 1.0.0 through 1.10.2 have a server-side request forgery (SSRF, a vulnerability where an attacker tricks the server into making unintended requests to other systems) vulnerability that lets unauthenticated attackers send unauthorized requests from the affected system. This could be used to scan networks or set up follow-on attacks.

NVD/CVE Database
05

CVE-2026-12763: IBM Langflow OSS 1.0.0 through 1.11.5 could allow an authenticated attacker to access another user's MCP server context

security
Sep 14, 2026

IBM Langflow OSS versions 1.0.0 through 1.11.5 has a security flaw where a logged-in attacker can view another user's MCP (Model Context Protocol, a system for connecting AI tools to external services) server settings because the cache key isolation (the method that keeps different users' data separate in temporary storage) is not working properly in the MCP Tools component.

NVD/CVE Database
06

CVE-2026-55093: Tract is a tiny, no-nonsense, self-contained TensorFlow and ONNX inference toolkit. Prior to 0.21.16, 0.22.2, and 0.23.1

security
Sep 14, 2026

Tract, a toolkit for running machine learning models (TensorFlow and ONNX inference, which means executing pre-trained AI models), has a vulnerability in how it handles tensor dimensions (the sizes of data arrays). Before versions 0.21.16, 0.22.2, and 0.23.1, an attacker could craft a malicious model file that tricks Tract into allocating a small amount of memory while actually trying to access a much larger area, potentially exposing nearby data in memory or crashing the program.

Fix: This issue is fixed in versions 0.21.16, 0.22.2, and 0.23.1.

NVD/CVE Database
07

CVE-2026-17628: IBM Langflow OSS 1.0.0 through 1.10.2 could allow a remote authenticated attacker to change the password of an account d

security
Sep 14, 2026

IBM Langflow OSS (an open-source tool for building AI applications) versions 1.0.0 through 1.10.2 has a security flaw where an attacker who is already logged into an account can change another user's password because the system doesn't properly verify who should be allowed to make that change. This allows unauthorized account takeovers for authenticated users.

NVD/CVE Database
08

Jensen Huang puts Trump on speakerphone onstage to announce robots won’t take over the world

industry
Sep 14, 2026

NVIDIA CEO Jensen Huang took a speakerphone call from President Trump during an industry summit, where Trump dismissed concerns about AI safety as a "hoax" and stated that "robots will not be taking over." The call occurred amid broader debate in the AI industry about how quickly AI development should proceed, including a recent essay from Anthropic's CEO arguing for slower AI advancement.

The Verge (AI)
09

China dismisses AI ‘fearmongering’ as spy chief warns of threat to Communist party rule

policy
Sep 14, 2026

China dismissed calls from Anthropic's CEO Dario Amodei for the US to block China's AI development as 'fearmongering,' while China's top spy official warned that advanced AI could threaten Communist party rule. Amodei had written that the US should both slow global AI progress and specifically prevent China from advancing in AI to maintain technological advantage.

The Guardian Technology
10

The AI industry has taken a doomer turn. What now?

safetypolicy
Sep 14, 2026

AI lab leaders, including the CEOs of Anthropic, OpenAI, Google DeepMind, and SpaceX, have publicly called for slowing down the development of large language models (LLMs, which are AI systems trained on massive amounts of text data) because they worry about risks from cyberattacks, bioterrorism, and economic harm. However, the article notes it's unclear what these companies actually mean by a slowdown or how they would implement it, and suggests they may be using safety concerns partly to improve their public image ahead of potential investments.

MIT Technology Review
Prev1...4344454647...787Next
critical

GHSA-fm8p-53ww-hf6w: DBHub HTTP transport DNS rebinding allows unauthenticated browser-origin SQL execution

CVE-2026-61742GitHub Advisory DatabaseSep 24, 2026
Sep 24, 2026
critical

GHSA-g5f9-3xfg-p9mf: Decepticon: Role-boundary forgery via ChatML special-token literals in web crawl output composed into LLM context

CVE-2026-61732GitHub Advisory DatabaseSep 24, 2026
Sep 24, 2026
critical

CVE-2026-95985 - Kiro IDE Allows Agentic Writes to Global Configurations While Working in Untrusted Workspaces

AWS Security BulletinsSep 24, 2026
Sep 24, 2026
critical

Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials

The Hacker NewsSep 22, 2026
Sep 22, 2026