{"schema_version":1,"title":"Google TensorFlow vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 31 vulnerabilities in Google TensorFlow: 0 in the last 7 days and 13 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2022-21729, was published on 9 July 2026.","url":"https://junglewise.ai/threats/technologies/tensorflow","json_url":"https://junglewise.ai/threats/technologies/tensorflow.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/tensorflow","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":1,"all_time":31,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":13,"last_365_days":14},"latest":[{"cve":"CVE-2022-21729","cvss":3.1,"epss":0.0079,"slug":"cve-2022-21729-tensorflow-integer-overflow-and-divide-by-zero-in-unravelindex","title":"PYSEC-2026-3090 - Overflow and uncaught divide by zero in Tensorflow","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:43.560623+00:00","url":"https://junglewise.ai/threats/cve-2022-21729-tensorflow-integer-overflow-and-divide-by-zero-in-unravelindex"},{"cve":"CVE-2022-23584","cvss":3.1,"epss":0.0073,"slug":"cve-2022-23584-tensorflow-decodepng-use-after-free-in-png-decoding","title":"PYSEC-2026-3085 - Use after free in `DecodePng` kernel","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:43.352014+00:00","url":"https://junglewise.ai/threats/cve-2022-23584-tensorflow-decodepng-use-after-free-in-png-decoding"},{"cve":"CVE-2022-21739","cvss":3.1,"epss":0.0079,"slug":"cve-2022-21739-tensorflow-quantizedmaxpool-null-pointer-dereference","title":"PYSEC-2026-3094 - Null pointer dereference in TensorFlow","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:41.991071+00:00","url":"https://junglewise.ai/threats/cve-2022-21739-tensorflow-quantizedmaxpool-null-pointer-dereference"},{"cve":"CVE-2022-23591","cvss":3.1,"epss":0.008,"slug":"cve-2022-23591-tensorflow-stack-overflow-in-graphdef-parsing","title":"PYSEC-2026-3084 - Stack overflow in TensorFlow","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:40.499683+00:00","url":"https://junglewise.ai/threats/cve-2022-23591-tensorflow-stack-overflow-in-graphdef-parsing"},{"cve":"CVE-2022-21726","cvss":3.1,"epss":0.0083,"slug":"cve-2022-21726-google-tensorflow-heap-out-of-bounds-read-in-dequantize-operation","title":"PYSEC-2026-3082 - Out of bounds read in Tensorflow","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:38.880314+00:00","url":"https://junglewise.ai/threats/cve-2022-21726-google-tensorflow-heap-out-of-bounds-read-in-dequantize-operation"},{"cve":"CVE-2022-41907","cvss":3.1,"epss":0.0047,"slug":"cve-2022-41907-tensorflow-resizenearestneighborgrad-integer-overflow","title":"PYSEC-2026-945 - Overflow in `ResizeNearestNeighborGrad`","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:24.772775+00:00","url":"https://junglewise.ai/threats/cve-2022-41907-tensorflow-resizenearestneighborgrad-integer-overflow"},{"cve":"CVE-2022-41899","cvss":3.1,"epss":0.0047,"slug":"cve-2022-41899-tensorflow-sdcaoptimizer-input-validation-crash","title":"PYSEC-2026-941 - `CHECK` fail via inputs in `SdcaOptimizer`","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:24.51573+00:00","url":"https://junglewise.ai/threats/cve-2022-41899-tensorflow-sdcaoptimizer-input-validation-crash"},{"cve":"CVE-2022-35982","cvss":3.1,"epss":0.0051,"slug":"cve-2022-35982-tensorflow-segfault-in-sparsebincount","title":"PYSEC-2026-947 - TensorFlow vulnerable to segfault in `SparseBincount`","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:21.684527+00:00","url":"https://junglewise.ai/threats/cve-2022-35982-tensorflow-segfault-in-sparsebincount"},{"cve":"CVE-2022-35968","cvss":3.1,"epss":0.0048,"slug":"cve-2022-35968-tensorflow-check-failure-in-avgpoolgrad","title":"PYSEC-2026-940 - TensorFlow vulnerable to `CHECK` fail in `AvgPoolGrad`","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:21.092471+00:00","url":"https://junglewise.ai/threats/cve-2022-35968-tensorflow-check-failure-in-avgpoolgrad"},{"cve":"CVE-2022-35999","cvss":3.1,"epss":0.0048,"slug":"cve-2022-35999-tensorflow-check-fail-in-conv2dbackpropinput","title":"PYSEC-2026-946 - TensorFlow vulnerable to `CHECK` fail in `Conv2DBackpropInput`","severity":"low","exploited":false,"published_at":"2026-07-06T08:03:32.614728+00:00","url":"https://junglewise.ai/threats/cve-2022-35999-tensorflow-check-fail-in-conv2dbackpropinput"},{"cve":"CVE-2022-29208","cvss":3.1,"epss":0.0038,"slug":"cve-2022-29208-tensorflow-editdistance-out-of-bounds-write","title":"PYSEC-2026-943 - Segfault and OOB write due to incomplete validation in `EditDistance` in TensorFlow","severity":"low","exploited":false,"published_at":"2026-07-06T08:03:30.019686+00:00","url":"https://junglewise.ai/threats/cve-2022-29208-tensorflow-editdistance-out-of-bounds-write"},{"cve":"CVE-2022-29200","cvss":3.1,"epss":0.0032,"slug":"cve-2022-29200-tensorflow-lstmblockcell-missing-input-validation-denial-of","title":"PYSEC-2026-944 - Missing validation causes denial of service via `LSTMBlockCell`","severity":"low","exploited":false,"published_at":"2026-07-06T08:03:29.527017+00:00","url":"https://junglewise.ai/threats/cve-2022-29200-tensorflow-lstmblockcell-missing-input-validation-denial-of"},{"cve":"CVE-2022-29193","cvss":3.1,"epss":0.0032,"slug":"cve-2022-29193-tensorflow-tensorsummaryv2-input-validation-denial-of-service","title":"PYSEC-2026-942 - Missing validation causes `TensorSummaryV2` to crash","severity":"low","exploited":false,"published_at":"2026-07-06T08:03:27.898105+00:00","url":"https://junglewise.ai/threats/cve-2022-29193-tensorflow-tensorsummaryv2-input-validation-denial-of-service"},{"cve":"CVE-2026-2492","cvss":7.8,"epss":0.0024,"slug":"cve-2026-2492-tensorflow-privilege-escalation-via-uncontrolled-hdf5-plugin","title":"TensorFlow privilege escalation via uncontrolled HDF5 plugin search path","severity":"high","exploited":false,"published_at":"2026-02-20T23:16:05.44+00:00","url":"https://junglewise.ai/threats/cve-2026-2492-tensorflow-privilege-escalation-via-uncontrolled-hdf5-plugin"},{"cve":"CVE-2021-41216","cvss":3.1,"epss":0.0016,"slug":"cve-2021-41216-tensorflow-heap-buffer-overflow-in-transpose-shape-inference","title":"PYSEC-2021-823 - TensorFlow is an open source platform for machine learning. In affected versions the shape inference function for `Transpose` is vulnerable","severity":"low","exploited":false,"published_at":"2021-11-05T23:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-41216-tensorflow-heap-buffer-overflow-in-transpose-shape-inference"},{"cve":"CVE-2021-41226","cvss":3.1,"epss":0.0021,"slug":"cve-2021-41226-tensorflow-heap-buffer-overflow-in-sparsebincount","title":"PYSEC-2021-833 - TensorFlow is an open source platform for machine learning. In affected versions the implementation of `SparseBinCount` is vulnerable to a h","severity":"low","exploited":false,"published_at":"2021-11-05T21:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-41226-tensorflow-heap-buffer-overflow-in-sparsebincount"},{"cve":"CVE-2021-41198","cvss":3.1,"epss":0.0024,"slug":"cve-2021-41198-tensorflow-integer-overflow-in-tf-tile","title":"PYSEC-2021-806 - TensorFlow is an open source platform for machine learning. In affected versions if `tf.tile` is called with a large input argument then the","severity":"low","exploited":false,"published_at":"2021-11-05T20:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-41198-tensorflow-integer-overflow-in-tf-tile"},{"cve":"CVE-2021-37690","cvss":3.1,"epss":0.0016,"slug":"cve-2021-37690-tensorflow-use-after-free-in-shape-inference-functions","title":"PYSEC-2021-801 - TensorFlow is an end-to-end open source platform for machine learning. In affected versions when running shape functions, some functions (su","severity":"low","exploited":false,"published_at":"2021-08-13T00:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37690-tensorflow-use-after-free-in-shape-inference-functions"},{"cve":"CVE-2021-37668","cvss":3.1,"epss":0.0015,"slug":"cve-2021-37668-tensorflow-unravelindex-division-by-zero","title":"PYSEC-2021-779 - TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause denial of service in appli","severity":"low","exploited":false,"published_at":"2021-08-12T23:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37668-tensorflow-unravelindex-division-by-zero"},{"cve":"CVE-2021-37673","cvss":3.1,"epss":0.0015,"slug":"cve-2021-37673-tensorflow-mapstage-denial-of-service-via-check-fail","title":"PYSEC-2021-784 - TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a denial of service via","severity":"low","exploited":false,"published_at":"2021-08-12T23:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37673-tensorflow-mapstage-denial-of-service-via-check-fail"},{"cve":"CVE-2021-37691","cvss":3.1,"epss":0.0015,"slug":"cve-2021-37691-tensorflow-tflite-division-by-zero-in-lsh-operation","title":"PYSEC-2021-802 - TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can craft a TFLite model that would","severity":"low","exploited":false,"published_at":"2021-08-12T23:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37691-tensorflow-tflite-division-by-zero-in-lsh-operation"},{"cve":"CVE-2021-37654","cvss":3.1,"epss":0.0017,"slug":"cve-2021-37654-tensorflow-heap-out-of-bounds-read-in-resourcegather","title":"PYSEC-2021-765 - TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a crash via a `CHECK`-fa","severity":"low","exploited":false,"published_at":"2021-08-12T21:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37654-tensorflow-heap-out-of-bounds-read-in-resourcegather"},{"cve":"CVE-2021-37644","cvss":3.1,"epss":0.0015,"slug":"cve-2021-37644-tensorflow-std-abort-in-tensorlistreserve","title":"PYSEC-2021-755 - TensorFlow is an end-to-end open source platform for machine learning. In affected versions providing a negative element to `num_elements` l","severity":"low","exploited":false,"published_at":"2021-08-12T21:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37644-tensorflow-std-abort-in-tensorlistreserve"},{"cve":"CVE-2021-29590","cvss":3.1,"epss":0.002,"slug":"cve-2021-29590-tensorflow-tflite-heap-out-of-bounds-read-in-minimum-or-maximum","title":"PYSEC-2021-716 - TensorFlow is an end-to-end open source platform for machine learning. The implementations of the `Minimum` and `Maximum` TFLite operators c","severity":"low","exploited":false,"published_at":"2021-05-14T20:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-29590-tensorflow-tflite-heap-out-of-bounds-read-in-minimum-or-maximum"},{"cve":"CVE-2021-29523","cvss":3.1,"epss":0.0019,"slug":"cve-2021-29523-tensorflow-check-fail-in-addmanysparsetotensorsmap","title":"PYSEC-2021-649 - TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a denial of service via a `CHECK`-fail in `tf","severity":"low","exploited":false,"published_at":"2021-05-14T20:15:00+00:00","url":"https://junglewise.ai/threats/cve-2021-29523-tensorflow-check-fail-in-addmanysparsetotensorsmap"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":13},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Google Chrome","slug":"chrome","vulnerabilities":2530,"url":"https://junglewise.ai/threats/technologies/chrome"},{"name":"Google Android","slug":"android","vulnerabilities":359,"url":"https://junglewise.ai/threats/technologies/android"},{"name":"Google Chrome for iOS","slug":"chrome-for-ios","vulnerabilities":79,"url":"https://junglewise.ai/threats/technologies/chrome-for-ios"},{"name":"Google Chromium V8","slug":"chromium-v8","vulnerabilities":41,"url":"https://junglewise.ai/threats/technologies/chromium-v8"},{"name":"Google Chromium","slug":"chromium","vulnerabilities":36,"url":"https://junglewise.ai/threats/technologies/chromium"},{"name":"Google Cloud Platform","slug":"google-cloud-platform","vulnerabilities":29,"url":"https://junglewise.ai/threats/technologies/google-cloud-platform"},{"name":"Google Android Framework","slug":"android-framework","vulnerabilities":21,"url":"https://junglewise.ai/threats/technologies/android-framework"},{"name":"Google Chrome for Android","slug":"chrome-for-android","vulnerabilities":21,"url":"https://junglewise.ai/threats/technologies/chrome-for-android"},{"name":"Google ChromeOS","slug":"chromeos","vulnerabilities":20,"url":"https://junglewise.ai/threats/technologies/chromeos"},{"name":"Google Pixel Bootloader","slug":"pixel-bootloader","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/pixel-bootloader"},{"name":"Google WebView","slug":"webview","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/webview"},{"name":"Google A2ui\\","slug":"a2ui","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/a2ui"}],"technology":{"hub":true,"name":"Google TensorFlow","slug":"tensorflow","vendor":{"name":"Google","slug":"google","url":"https://junglewise.ai/threats/vendors/google"},"aliases":[],"category":"library","homepage":"https://www.tensorflow.org/","repo_url":"https://github.com/tensorflow/tensorflow","description":"TensorFlow is an open-source library for machine learning and artificial intelligence.","url":"https://junglewise.ai/threats/technologies/tensorflow"},"most_severe":[{"cve":"CVE-2026-2492","cvss":7.8,"epss":0.0024,"slug":"cve-2026-2492-tensorflow-privilege-escalation-via-uncontrolled-hdf5-plugin","title":"TensorFlow privilege escalation via uncontrolled HDF5 plugin search path","severity":"high","exploited":false,"published_at":"2026-02-20T23:16:05.44+00:00","url":"https://junglewise.ai/threats/cve-2026-2492-tensorflow-privilege-escalation-via-uncontrolled-hdf5-plugin"},{"cve":"CVE-2022-21726","cvss":3.1,"epss":0.0083,"slug":"cve-2022-21726-google-tensorflow-heap-out-of-bounds-read-in-dequantize-operation","title":"PYSEC-2026-3082 - Out of bounds read in Tensorflow","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:38.880314+00:00","url":"https://junglewise.ai/threats/cve-2022-21726-google-tensorflow-heap-out-of-bounds-read-in-dequantize-operation"},{"cve":"CVE-2022-23591","cvss":3.1,"epss":0.008,"slug":"cve-2022-23591-tensorflow-stack-overflow-in-graphdef-parsing","title":"PYSEC-2026-3084 - Stack overflow in TensorFlow","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:40.499683+00:00","url":"https://junglewise.ai/threats/cve-2022-23591-tensorflow-stack-overflow-in-graphdef-parsing"},{"cve":"CVE-2022-21729","cvss":3.1,"epss":0.0079,"slug":"cve-2022-21729-tensorflow-integer-overflow-and-divide-by-zero-in-unravelindex","title":"PYSEC-2026-3090 - Overflow and uncaught divide by zero in Tensorflow","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:43.560623+00:00","url":"https://junglewise.ai/threats/cve-2022-21729-tensorflow-integer-overflow-and-divide-by-zero-in-unravelindex"},{"cve":"CVE-2022-21739","cvss":3.1,"epss":0.0079,"slug":"cve-2022-21739-tensorflow-quantizedmaxpool-null-pointer-dereference","title":"PYSEC-2026-3094 - Null pointer dereference in TensorFlow","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:41.991071+00:00","url":"https://junglewise.ai/threats/cve-2022-21739-tensorflow-quantizedmaxpool-null-pointer-dereference"},{"cve":"CVE-2022-23584","cvss":3.1,"epss":0.0073,"slug":"cve-2022-23584-tensorflow-decodepng-use-after-free-in-png-decoding","title":"PYSEC-2026-3085 - Use after free in `DecodePng` kernel","severity":"low","exploited":false,"published_at":"2026-07-09T16:49:43.352014+00:00","url":"https://junglewise.ai/threats/cve-2022-23584-tensorflow-decodepng-use-after-free-in-png-decoding"},{"cve":"CVE-2022-35982","cvss":3.1,"epss":0.0051,"slug":"cve-2022-35982-tensorflow-segfault-in-sparsebincount","title":"PYSEC-2026-947 - TensorFlow vulnerable to segfault in `SparseBincount`","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:21.684527+00:00","url":"https://junglewise.ai/threats/cve-2022-35982-tensorflow-segfault-in-sparsebincount"},{"cve":"CVE-2022-35968","cvss":3.1,"epss":0.0048,"slug":"cve-2022-35968-tensorflow-check-failure-in-avgpoolgrad","title":"PYSEC-2026-940 - TensorFlow vulnerable to `CHECK` fail in `AvgPoolGrad`","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:21.092471+00:00","url":"https://junglewise.ai/threats/cve-2022-35968-tensorflow-check-failure-in-avgpoolgrad"},{"cve":"CVE-2022-35999","cvss":3.1,"epss":0.0048,"slug":"cve-2022-35999-tensorflow-check-fail-in-conv2dbackpropinput","title":"PYSEC-2026-946 - TensorFlow vulnerable to `CHECK` fail in `Conv2DBackpropInput`","severity":"low","exploited":false,"published_at":"2026-07-06T08:03:32.614728+00:00","url":"https://junglewise.ai/threats/cve-2022-35999-tensorflow-check-fail-in-conv2dbackpropinput"},{"cve":"CVE-2022-41907","cvss":3.1,"epss":0.0047,"slug":"cve-2022-41907-tensorflow-resizenearestneighborgrad-integer-overflow","title":"PYSEC-2026-945 - Overflow in `ResizeNearestNeighborGrad`","severity":"low","exploited":false,"published_at":"2026-07-07T10:17:24.772775+00:00","url":"https://junglewise.ai/threats/cve-2022-41907-tensorflow-resizenearestneighborgrad-integer-overflow"}],"generated_at":"2026-09-27T03:07:00.185062+00:00"}