What changed in AI security, Oct 27 to Nov 2, 2025
Oct 27 to Nov 2, 2025 (ISO week 2025-W44). Weeks run Monday to Sunday in UTC.
13 records published, +7 on the previous week: 8 vulnerabilities (+4), 0 incidents (no change), 2 research items (+2), 3 news items (+1), 0 policy items (no change).
Critical and high advisories
Vulnerability records rated critical or high, newest first.- High
CVE-2025-12060: Keras get_file path traversal via tar archive extraction
CVE-2025-12060NVD/CVE Database - Critical
CVE-2025-11201: MLflow Tracking Server directory traversal leads to code execution
CVE-2025-11201NVD/CVE Database - Critical
CVE-2025-11200: MLflow authentication bypass through weak password requirements
CVE-2025-11200NVD/CVE Database - High
GHSA-c2jp-c369-7pvx: FastMCP Auth Integration Allows for Confused Deputy Account Takeover
GitHub Advisory Database - High
CVE-2025-12058: Keras load_model arbitrary local file read and SSRF via StringLookup vocabulary
CVE-2025-12058NVD/CVE Database
Exploitation signals
Vulnerabilities published in the week that are listed in the CISA Known Exploited Vulnerabilities catalog or have an EPSS score of 10% or more.| Advisory | Exploitation | EPSS | Published |
|---|---|---|---|
| CVE-2025-11201: MLflow Tracking Server directory traversal leads to code execution CVE-2025-11201NVD/CVE Database | Not listed | 26.5% |
Packages that began delegating to a language model
Exposure Registry packages whose first release declaring an LLM SDK, agent framework or MCP dependency was published in the week.| Package | Ecosystem | LLM SDKs | Release | Released |
|---|---|---|---|---|
| jupyter-ai-jupyternaut | PyPI | LangChain, LangGraph | 0.0.3 | |
| harbor | PyPI | Anthropic SDK, Claude Agent SDK, DSPy, Google Gemini SDK, Hugging Face Hub / Transformers, LiteLLM, OpenAI SDK | 0.1.0 |
Topics that moved
Largest increases over the mean of the 4 previous weeks, for topics with at least 3 records in the week.No topic had at least 3 records in this week and more than its mean over the 4 previous weeks.
Research
Peer-reviewed first, then newest.Policy and regulation
Newest first.No regulatory or policy records were published in this week.
Generated from the AI Sec Watch database at . Every item links to its record.