What changed in AI security, Nov 17 to Nov 23, 2025
Nov 17 to Nov 23, 2025 (ISO week 2025-W47). Weeks run Monday to Sunday in UTC.
13 records published, +1 on the previous week: 13 vulnerabilities (+5), 0 incidents (no change), 0 research items (-2), 0 news items (-2), 0 policy items (no change).
Critical and high advisories
Vulnerability records rated critical or high, newest first.- High
CVE-2025-65946: Roo Code auto-executes commands outside its allow list prefixes
CVE-2025-65946NVD/CVE Database - High
CVE-2025-12973: S2B AI Assistant WordPress plugin arbitrary file upload via storeFile()
CVE-2025-12973NVD/CVE Database - High
CVE-2025-62609: MLX segmentation fault in GGUF file loading from malicious files
CVE-2025-62609NVD/CVE Database - Critical
CVE-2025-62608: MLX heap buffer overflow in load() when parsing NumPy .npy files
CVE-2025-62608NVD/CVE Database - High
CVE-2025-62164: vLLM memory corruption through prompt embeddings in Completions API
CVE-2025-62164NVD/CVE Database - Critical
CVE-2025-64755: Claude Code read-only validation bypass via sed command parsing
CVE-2025-64755NVD/CVE Database - High
CVE-2025-64660: GitHub Copilot and Visual Studio Code improper access control
CVE-2025-64660NVD/CVE Database - Critical
CVE-2025-65099: Claude Code code execution via Yarn plugins in untrusted directories
CVE-2025-65099NVD/CVE Database - High
CVE-2025-34322: Nagios Log Server command injection in Global Settings
CVE-2025-34322NVD/CVE Database
Exploitation signals
Vulnerabilities published in the week that are listed in the CISA Known Exploited Vulnerabilities catalog or have an EPSS score of 10% or more.No vulnerability published in this week is listed as exploited or has an EPSS score of 10% or more.
Packages that began delegating to a language model
Exposure Registry packages whose first release declaring an LLM SDK, agent framework or MCP dependency was published in the week.| Package | Ecosystem | LLM SDKs | Release | Released |
|---|---|---|---|---|
| tinker | PyPI | Hugging Face Hub / Transformers | 0.4.1 | |
| @microsoft/agents-a365-tooling | npm | Model Context Protocol SDK | 0.1.0-preview.30 |
Topics that moved
Largest increases over the mean of the 4 previous weeks, for topics with at least 3 records in the week.| Topic | Records | Weekly mean, previous 4 | Difference |
|---|---|---|---|
| Inference infrastructure | 3 | 0.3 | +2.8 |
| AI agents | 3 | 0.5 | +2.5 |
Research
Peer-reviewed first, then newest.No research papers or reports were published in this week.
Policy and regulation
Newest first.No regulatory or policy records were published in this week.
Generated from the AI Sec Watch database at . Every item links to its record.