Adversarial machine learning
Attacks on how models learn and decide: adversarial examples, evasion, data poisoning and backdoors in trained models.
- All items
- 108
- Last 90 days
- 47
- Change
- +114%vs 22 before
Items per month
| Month | Items |
|---|---|
| May 2025 | 0 |
| Jun 2025 | 0 |
| Jul 2025 | 0 |
| Aug 2025 | 1 |
| Sep 2025 | 1 |
| Oct 2025 | 1 |
| Nov 2025 | 1 |
| Dec 2025 | 6 |
| Jan 2026 | 4 |
| Feb 2026 | 6 |
| Mar 2026 | 11 |
| Apr 2026 | 8 |
| May 2026 | 10 |
| Jun 2026 | 9 |
| Jul 2026 | 8 |
| Aug 2026 | 3 |
| Sep 2026 | 24 |
| Oct 2026 | 12 |
4 items
CVE-2026-31230: Adversarial Robustness Toolbox code injection via command-line arguments
May 12, 2026HighVulnerabilitySecurityCVE-2026-31230The Adversarial Robustness Toolbox (ART) through 1.20.1 has a command-line argument injection flaw in its Kubeflow component, robustness_evaluation_fgsm_pytorch.py. The script passes the --clip_values and --input_shape arguments to the unsafe eval() function, so injected Python code runs when eval() is called. An attacker who can control these arguments, for example through pipeline configuration or automated scripts, can achieve arbitrary code execution on the system running the ART evaluation.
NVD/CVE DatabaseCVE-2026-31229: The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains an insecure deserialization vulnerability (CWE-502) in…
May 12, 2026HighVulnerabilitySecurityCVE-2026-31229The Adversarial Robustness Toolbox (ART) through 1.20.1 contains an insecure deserialization flaw (CWE-502) in its Kubeflow component's model loading. During robustness evaluation, model weights loaded from a file such as model.pt use torch.load() without weights_only=True, which permits Pickle deserialization of arbitrary Python objects. An attacker who uploads a crafted model file to object storage referenced by the pipeline, or who controls the model_id parameter to point to such a file, can achieve remote code execution when the pipeline loads the model.
NVD/CVE DatabaseCVE-2026-31228: Adversarial Robustness Toolbox remote code execution in Kubeflow via eval()
May 12, 2026CriticalVulnerabilitySecurityCVE-2026-31228CVE-2026-31228 affects the Adversarial Robustness Toolbox (ART) through 1.20.1, in its Kubeflow component. The robustness evaluation function for PyTorch models passes user-supplied strings for the LossFn and Optimizer parameters to eval() without sanitization, so an attacker can supply a crafted string containing arbitrary Python code. That code runs when eval() is called, giving the attacker full control of the system running the ART evaluation.
NVD/CVE DatabaseCVE-2024-5185: EmbedAI data poisoning through CSRF via malicious webpage
May 29, 2024HighVulnerabilitySecurityCVE-2024-5185CVE-2024-5185 affects the EmbedAI application, which is susceptible to security issues enabling Data Poisoning attacks. The flaw stems from a CSRF vulnerability, enabled by the absence of secure session management and weak CORS policies. An attacker who lures a user to a malicious webpage can trick that user into uploading and integrating incorrect data into the application's language model.
NVD/CVE Database
Topic added 2026-10-09. An item belongs to this topic when its title matches one of the topic's patterns or its summary mentions the topic at least twice. Report a wrong match with the feedback button on the item.