About Services Pricing Case Studies Blog Contact Book Free Audit →
📊 LIVE INDUSTRY BENCHMARK

State of Agent Security

A real-time, data-driven look at the vulnerability landscape for AI agents, LLMs, and MCP. Tracked continuously from CISA KEV and NVD feeds, filtered for what actually matters to teams shipping agents in production.

Data updated daily · 6:00 AM CT
851
AI/Agent CVEs (30-day)
1,660
CISA KEV total
38
KEV AI-relevant
9,757
NVD CVEs (window)

Where the Risk Is Concentrating

AI/agent-relevant CVEs broken down by category over the tracking window.

RAG / Retrieval
363
363
MCP / Tool / Agent
226
226
LLM / Foundation Model
99
99
Generative AI / Chatbot
24
24
ML Framework
15
15
Prompt Injection
14
14

What the Data Says

RAG is the new front line.

Retrieval-augmented generation vulnerabilities dominate our feed — 363 of 851 tracked CVEs. If you connect an agent to a vector database or knowledge base, that retrieval layer is the most likely place an injection lands.

MCP / agent tooling is now the #2 surface.

Model Context Protocol and agent tooling account for 226 CVEs — the fastest-growing category. Every tool your agent can call is a potential privilege boundary, and MCP tool-abuse vectors are the ones teams most often miss.

Known-exploited counts are the canary.

38 AI/agent-relevant entries sit in CISA's known-exploited catalog. When a vulnerability is in KEV, it's being actively exploited in the wild — not theoretical. That's the number to watch for urgency.

Latest Relevant CVEs

CVEDateCategory
CVE-2026-706192026-08-04RAG
CVE-2026-455382026-08-04MCP / Agent
CVE-2026-704772026-08-04Prompt Injection
CVE-2026-704782026-08-04LLM
CVE-2026-704922026-08-04RAG
CVE-2026-679792026-08-04RAG
CVE-2026-476822026-08-04RAG
CVE-2026-704742026-08-04RAG
CVE-2026-704862026-08-04RAG
CVE-2026-704852026-08-04RAG

Full dataset tracked locally. This page shows the most recent high-signal entries.

Methodology

Want to know where YOUR agent stack stands?

This is the industry picture. The only way to know your own exposure is to test it — against the same attack classes driving these CVEs.

Book a Free 15-Min Audit → Or run your system prompt through the free AI System Prompt Scanner