CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

99.9% of fixable AI vulnerabilities remain unpatched

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 2383

As cited

Copy frozen at (site build).

ai security

99.9% of fixable AI vulnerabilities remain unpatched

Orca Security's 2026 State of AI Security Report reveals that 81.2% of organizations running AI packages contain at least one known vulnerability, with 99.9% of fixable AI vulnerability alerts remaining unpatched. The research indicates that firms prioritize speed over basic security practices when building and deploying AI in cloud environments, and more than half have already moved agent frameworks and custom AI applications into production.

Why it matters: Security teams and cloud practitioners need to assess their AI deployments for known vulnerabilities immediately, as the vast majority of fixable issues remain unaddressed across the industry and create exploitable gaps in production systems.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ai security

99.9% of fixable AI vulnerabilities remain unpatched

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ai security

99.9% of fixable AI vulnerabilities remain unpatched

A 2026 report by Orca Security indicates that most organizations deploying artificial intelligence (AI) in the cloud overlook basic security practices, with 81.2% of companies using AI packages having at least one known vulnerability. It also highlights that 99.9% of fixable AI vulnerability alerts remain unpatched. Over half of adopters have agent frameworks in production or use AI for custom applications.

Why it matters: Organizations using AI in the cloud are exposed to preventable vulnerabilities, requiring immediate patching to reduce risk.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary