aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

Browse All

All tracked items across vulnerabilities, news, research, incidents, and regulatory updates.

to
Export CSV
9703 items

OpenAI confidentially files for initial public offering on US stock market

infonews
industry
Jun 8, 2026

OpenAI has filed confidentially to go public on the US stock market, with an expected valuation exceeding $850 billion, making it one of the largest IPO (initial public offering, when a private company first sells shares to the public) listings in history. The company announced the filing preemptively because it expected the confidential submission to become public anyway, and stated it has not yet decided on a timeline for going public.

The Guardian Technology

OpenAI confidentially files for IPO, prepping Wall Street for mega AI debut

infonews
industry
Jun 8, 2026

OpenAI has confidentially filed for an IPO (initial public offering, where a private company sells shares to the public for the first time) with the Securities and Exchange Commission, joining competitors Anthropic and SpaceX in preparing to go public. The company, valued at over $850 billion, has not decided on a timeline for the IPO but says it could happen as soon as late 2025, though leadership notes some goals may be easier to achieve while remaining private. OpenAI is also planning a tender offer to let employees sell shares at the current valuation to ease pressure for immediate liquidity.

OpenAI files for IPO, following Anthropic

infonews
industry
Jun 8, 2026

OpenAI has filed a confidential Form S-1 with the SEC (Securities and Exchange Commission, the US agency that oversees financial markets and public companies), which is a preliminary step toward becoming a publicly traded company. This move follows Anthropic's similar filing in June, as both AI companies compete to go public. The confidential filing keeps sensitive details like executive pay and financial information private for now, rather than making them immediately public.

Apple partnering with Google and Nvidia for most advanced AI model

infonews
industry
Jun 8, 2026

Apple announced new AI features at its developer conference, including an improved Siri that can have back-and-forth conversations with users. Unlike some competitors, Apple is partnering with Google and Nvidia to build its most advanced AI model (Apple Foundation Model Cloud Pro) while emphasizing privacy by keeping user data local and using a system orchestrator (a routing component that directs queries to either on-device or cloud processing) to minimize data collection compared to AI services like ChatGPT.

ICYMI: May 2026 @AWS Security

infonews
securitypolicy

Apple debuts revamped ‘Siri AI’ and new child safety features for iPhones and iPads

infonews
industry
Jun 8, 2026

Apple announced a major upgrade to Siri at its developer conference, integrating it with Apple Intelligence (Apple's AI tool) and rebranding it as 'Siri AI'. The new voice assistant will function more like AI chatbots (such as ChatGPT or Google Gemini) rather than a traditional web-search question-and-answer tool, with a wide release planned for fall.

GHSA-6ghj-frrj-jjj3: Netty has Unbounded Direct Memory Consumption in its RedisDecoder

highvulnerability
security
Jun 8, 2026
CVE-2026-44890

Netty's RedisDecoder (a tool that reads Redis protocol messages) has a vulnerability where an attacker can send malformed Redis messages without proper line endings (`\r\n`) across multiple connections, causing the decoder to buffer data indefinitely and exhaust the server's direct memory pool (memory reserved for direct I/O operations), resulting in a DoS (denial of service) attack that prevents legitimate users from connecting.

GHSA-3244-j874-rhc2: Netty: Memory Exhaustion in RedisArrayAggregator due to Deeply Nested Arrays

highvulnerability
security
Jun 8, 2026
CVE-2026-44250

An attacker can crash a server using Netty (a networking library) by sending a malicious Redis message (a command sent to a Redis database) with deeply nested arrays. The RedisArrayAggregator component doesn't limit how many array layers it accepts, so an attacker can send thousands of nested arrays that force the server to create so many state objects that it runs out of memory and crashes.

CVE-2026-11393 - Code Injection via Improper Triple-Quote Escaping in AgentCore CLI Bedrock Agent Import

highvulnerability
security
Jun 8, 2026

```json { "summary": "A vulnerability (CVE-2026-11393) exists in AWS AgentCore CLI, a tool for managing AI agents on Amazon Bedrock. An attacker with certain permissions could inject malicious Python code by exploiting improper escaping of triple-quote characters (""") in a specific field, allowing the attacker's code to run if the generated file is executed. The vulnerability affects versions 0.4.0 through 0.14.1 and certain preview versions.", "solution": "N/A -- no mitigation discussed in

CVE-2026-46309: In the Linux kernel, the following vulnerability has been resolved: drm/xe/uapi: Reject coh_none PAT index for CPU cach

infovulnerability
security
Jun 8, 2026
CVE-2026-46309

A vulnerability in the Linux kernel's graphics driver (drm/xe) allowed a GPU with coh_none coherency mode (a setting that lets the GPU bypass CPU caches) to read sensitive data from CPU cache when applied to CPU cached memory. An attacker could potentially access stale data from previously freed memory pages belonging to other processes. The fix adds validation to reject this dangerous combination in the madvise function.

CVE-2026-46294: In the Linux kernel, the following vulnerability has been resolved: dm: fix a buffer overflow in ioctl processing Tony

infovulnerability
security
Jun 8, 2026
CVE-2026-46294

A buffer overflow vulnerability was found in the Linux kernel's device mapper ioctl (input/output control, a way for programs to send commands to kernel drivers) processing function, where pointer alignment could cause data to be written past the end of a buffer. However, the vulnerability has no practical security impact because only the root user can trigger it, and the libraries that normally communicate with device mapper use properly aligned buffer sizes that prevent the overflow from occurring.

Critical Zcash Vulnerability Found and Fixed

infonews
security
Jun 8, 2026

A critical vulnerability was found in Zcash's Orchard privacy pool, a system that uses zero-knowledge proofs (mathematical techniques that prove something is true without revealing details) to hide transaction information. The bug allowed attackers to bypass input validation checks and create fake ZEC (Zcash's cryptocurrency) out of nothing, though it's now been fixed.

CVE-2026-46480: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluat

highvulnerability
security
Jun 8, 2026
CVE-2026-46480

Flowise, a tool that provides a drag-and-drop interface for building customized large language model workflows, had a vulnerability in versions before 3.1.2 that allowed attackers to take over evaluators across different workspaces through mass-assignment (a type of security flaw where an attacker can modify multiple object properties at once that they shouldn't be able to change). The vulnerability has been patched in version 3.1.2.

CVE-2026-46479: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluat

highvulnerability
security
Jun 8, 2026
CVE-2026-46479

Flowise is a tool with a drag-and-drop interface for building custom AI workflows. Before version 3.1.2, it had a vulnerability where mass-assignment (improperly allowing users to modify system fields they shouldn't access) let attackers take over evaluations across different workspaces, even if they didn't have permission.

CVE-2026-46478: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, Dataset

highvulnerability
security
Jun 8, 2026
CVE-2026-46478

Flowise is a visual tool for building customized LLM (large language model) workflows. Before version 3.1.2, it had a mass-assignment vulnerability (a flaw where attackers can modify object properties they shouldn't access) that allowed users to take over dataset rows across different workspaces, with a high severity rating of 7.7.

CVE-2026-46477: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, dataset

highvulnerability
security
Jun 8, 2026
CVE-2026-46477

Flowise, a drag-and-drop tool for building customized AI workflows, had a vulnerability before version 3.1.2 that allowed attackers to take over datasets across different workspaces through mass-assignment (a flaw where an attacker can modify object properties that shouldn't be exposed). The vulnerability has a CVSS score (a 0-10 rating of how severe a vulnerability is) of 7.7, indicating it is high severity.

CVE-2026-46476: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, CustomT

highvulnerability
security
Jun 8, 2026
CVE-2026-46476

Flowise is a drag-and-drop tool for building custom large language model workflows. Before version 3.1.2, it had a mass-assignment vulnerability (a security flaw where unintended data fields can be modified) in its CustomTemplate feature that could let attackers take over templates across different workspaces. This issue has been fixed in version 3.1.2.

CVE-2026-46475: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, assista

highvulnerability
security
Jun 8, 2026
CVE-2026-46475

Flowise is a tool with a drag-and-drop interface for building customized AI workflows. Before version 3.1.2, it had a mass-assignment vulnerability (a type of security flaw where an attacker can modify data they shouldn't have access to) that allowed someone to take over assistants across different workspaces by manipulating how the system creates and updates assistants.

CVE-2026-46444: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, all CRU

highvulnerability
security
Jun 8, 2026
CVE-2026-46444

Flowise, a tool with a drag-and-drop interface for building custom AI workflows, had a security flaw in versions before 3.1.2 where certain endpoints (API routes, which are web addresses that accept requests) for managing OpenAI Assistants Vector Store lacked proper access controls. This meant that even though these endpoints required an API key (a credential for authentication), they didn't actually verify whether users had permission to perform their requested actions.

CVE-2026-46443: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, when cr

highvulnerability
security
Jun 8, 2026
CVE-2026-46443

Flowise is a tool with a drag-and-drop interface for building customized workflows with large language models (LLMs, AI systems trained on massive amounts of text). Before version 3.1.2, the software had a bug where sensitive encrypted credential data was being exposed in API responses when users filtered credentials by name, even though the same data was properly hidden when no filter was used. This is a high-severity security issue because it could allow someone with basic access to view encrypted passwords or API keys they shouldn't see.

Previous192 / 486Next
CNBC Technology
The Verge (AI)
CNBC Technology
Jun 8, 2026

This AWS security digest from May 2026 covers updates across AI security, infrastructure protection, identity management, and compliance. Key topics include securing agentic AI workflows (AI systems that take actions autonomously) using frameworks like Cedar for authorization, protecting AWS networks with filtering tools like AWS Network Firewall and WAF (web application firewall, which blocks malicious web traffic), and establishing compliance programs for ISO standards. The resources include blog posts, code samples, and workshops to help organizations adopt these security practices.

AWS Security Blog
The Guardian Technology
GitHub Advisory Database
GitHub Advisory Database
AWS Security Bulletins

Fix: Add validation in xe_vm_madvise_ioctl() to reject PAT indices (page attribute table settings) with XE_COH_NONE coherency mode when applied to CPU cached memory, aligning with existing validation in the vm_bind path.

NVD/CVE Database
NVD/CVE Database
Schneier on Security

Fix: Update to version 3.1.2 or later. The issue has been patched in version 3.1.2.

NVD/CVE Database

Fix: This issue has been patched in version 3.1.2.

NVD/CVE Database

Fix: This issue has been patched in version 3.1.2. Users should update Flowise to version 3.1.2 or later.

NVD/CVE Database

Fix: This issue has been patched in version 3.1.2.

NVD/CVE Database

Fix: Update to version 3.1.2, which patches this vulnerability.

NVD/CVE Database

Fix: This issue has been patched in version 3.1.2. Users should update to version 3.1.2 or later.

NVD/CVE Database

Fix: This issue has been patched in version 3.1.2.

NVD/CVE Database

Fix: Update Flowise to version 3.1.2 or later, where this issue has been patched.

NVD/CVE Database