Tensorflow
441 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Tensorflow, a product in the ai ml space. Use it to gauge the current risk picture and drill into individual advisories.
Tensorflow CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 1 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 2 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 1 |
| 2026-01 | 0 |
| 2026-02 | 1 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 441 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical7
- High113
- Medium216
- Low99
Latest CVEs
The 15 most recently published vulnerabilities affecting Tensorflow.
- CVE-2026-2492TensorFlow HDF5 Library Uncontrolled Search Path Element Local Privilege Escalation Vulnerability7.8
- CVE-2025-61729Excessive resource consumption when printing error string for host certificate validation in crypto/x5097.5
- CVE-2025-55556TensorFlow v2.18.0 was discovered to output random results when compiling Embedding, leading to unexpected behavior in the application.6.5
- CVE-2025-55559An issue was discovered TensorFlow v2.18.0. A Denial of Service (DoS) occurs when padding is set to 'valid' in tf.keras.layers.Conv2D.7.5
- CVE-2025-0649Stack Exhaustion In Tensorflow Serving7.5
- CVE-2023-33976TensorFlow segfault in array_ops.upper_bound7.5
- CVE-2023-25661Denial of Service in TensorFlow6.5
- CVE-2023-25660TensorFlow vulnerable to seg fault in `tf.raw_ops.Print`7.5
- CVE-2023-25659TensorFlow vulnerable to Out-of-Bounds Read in DynamicStitch7.5
- CVE-2023-25658TensorFlow vulnerable to Out-of-Bounds Read in GRUBlockCellGrad7.5
- CVE-2023-25662TensorFlow vulnerable to integer overflow in EditDistance7.5
- CVE-2023-25663TensorFlow has Null Pointer Error in TensorArrayConcatV27.5
- CVE-2023-25664TensorFlow vulnerable to Heap Buffer Overflow in AvgPoolGrad 7.5
- CVE-2023-25667TensorFlow vulnerable to segfault when opening multiframe gif6.5
- CVE-2023-25666TensorFlow has Floating Point Exception in AudioSpectrogram 7.5
Product grouping is registry-driven, with AI assist and human review. How it works