Security Findings
Vulnerabilities and risks discovered by Guard0 AI agents
10Critical
6Medium
4Low
| Severity | Finding | Application | Agent | Found | CVSS |
|---|---|---|---|---|---|
CRITICAL | Shadow AI Application - Unauthorized ChatGPT Wrapper VI-001-001 | marketing-chatgpt-wrapper | scout | 5 minutes ago | 9.1 |
CRITICAL | Direct Prompt Injection Vulnerability PM-001-001 | customer-support-copilot | hunter | 12 minutes ago | 9.4 |
CRITICAL | Model Memorization of Confidential Contracts SDC-001-001 | legal-contract-analyzer | hunter | 45 minutes ago | 9.2 |
CRITICAL | Hardcoded API Keys in Source Repository MC-001-001 | dev-copilot-internal | hunter | 20 minutes ago | 9 |
CRITICAL | PHI Logged to CloudWatch Without Encryption GV-001-001 | medical-diagnosis-assistant | guardian | 15 minutes ago | 9.5 |
CRITICAL | HR Assistant Has Full Employee Database Access PM-002-001 | hr-recruiting-assistant | hunter | 2 hours ago | 8.8 |
CRITICAL | Potential Bias in Loan Underwriting Model GV-002-001 | loan-underwriting-ai | guardian | 30 minutes ago | 8.5 |
CRITICAL | Indirect Prompt Injection via Poisoned Knowledge Base Document RAG-001-001 | internal-kb-assistant | hunter | 8 minutes ago | 9.1 |
CRITICAL | Multi-Step Agent Manipulation via Tool Chain Exploitation AGT-001-001 | sales-ops-agent | hunter | 3 minutes ago | 9.6 |
CRITICAL | SQL Injection via MCP Database Connector MCP-001-001 | mcp-database-connector | hunter | 1 hour ago | 9.3 |
MEDIUM | No Rate Limiting on Code Review Bot DF-001-001 | code-review-bot | hunter | 30 minutes ago | 6.8 |
MEDIUM | HTTP Traffic to Internal ML Server MC-002-001 | product-image-generator | sentinel | 6 hours ago | 6.5 |
MEDIUM | Multi-Turn Jailbreak in Sales Email Generator PM-003-001 | sales-intelligence-agent | hunter | 1 hour ago | 5.8 |
MEDIUM | Customer Data in Marketing Content Prompts SDC-002-001 | marketing-content-generator | scout | 4 hours ago | 6.2 |
MEDIUM | Unmonitored Model Performance Degradation CBI-001-001 | customer-sentiment-analyzer | guardian | 8 hours ago | 5.5 |
MEDIUM | MCP Server Allows Unrestricted SQL Queries MC-003-001 | mcp-database-connector | hunter | 4 hours ago | 7.2 |
LOW | No Model Provenance Documentation EV-001-001 | financial-forecasting-engine | guardian | 3 hours ago | 4.2 |
LOW | Vulnerable Tokenizer Version DF-002-001 | customer-sentiment-analyzer | scout | 8 hours ago | 3.8 |
LOW | Missing Human Review for High-Stakes Decisions GV-003-001 | insurance-claims-processor | guardian | 2 hours ago | 4.5 |
LOW | Missing Security Metrics in API Documentation DB-001-001 | api-documentation-gen | scout | 1 day ago | 3.2 |
Focus sentinel
Focus sentinel
AI-Powered Auto-Fix
Close
Focus sentinelFocus sentinel
Create Ticket
Close