Skip to content

What changed in AI security, May 11 to May 17, 2026

May 11 to May 17, 2026 (ISO week 2026-W20). Weeks run Monday to Sunday in UTC.

230 records published, +42 on the previous week: 92 vulnerabilities (+42), 1 incident (+1), 15 research items (-1), 118 news items (-2), 4 policy items (+2).

Critical and high advisories

Vulnerability records rated critical or high, newest first. Showing 25 of 76.

Exploitation signals

Vulnerabilities published in the week that are listed in the CISA Known Exploited Vulnerabilities catalog or have an EPSS score of 10% or more.

No vulnerability published in this week is listed as exploited or has an EPSS score of 10% or more.

Packages that began delegating to a language model

Exposure Registry packages whose first release declaring an LLM SDK, agent framework or MCP dependency was published in the week.
PackageEcosystemLLM SDKsReleaseReleased
fasta2aPyPIPydantic AI0.6.1
milvus-litePyPIFAISS3.0
fastmcp-slimPyPIAnthropic SDK, Google Gemini SDK, Model Context Protocol SDK, OpenAI SDK3.3.0b1

Topics that moved

Largest increases over the mean of the 4 previous weeks, for topics with at least 3 records in the week.
TopicRecordsWeekly mean, previous 4Difference
AI agents2515.8+9.3
Model and package supply chain81.3+6.8
Deepfakes and impersonation62.0+4.0
Retrieval-augmented generation40.5+3.5
Adversarial machine learning52.0+3.0

Research

Peer-reviewed first, then newest. Showing 8 of 15.

Policy and regulation

Newest first.

Generated from the AI Sec Watch database at . Every item links to its record.

RSS feed of weekly changesPrevious week