Anthropic's Project Glasswing reportedly generated 26,153 open-source vulnerability findings, but public disclosure records show a far smaller number progressing through validation and remediation. Public coordinated-vulnerability-disclosure cards across eight projects document 12 CVEs and five GHSAs—including three critical and seven high-severity cards—while attributing the accepted work to Glasswing without identifying a specific Anthropic model in most cases. Only CVE-2026-4747 has separate primary-source attribution to Mythos.
The disparity illustrates that AI-assisted discovery can outpace human triage, patch authoring, maintainer review, and enterprise deployment. Anthropic's public ledgers reportedly reflected about 202 fixed vulnerabilities after five months, while Trail of Bits and OpenAI's Patch the Planet found 1,646 issues in 59 codebases but had only 215 merged patches as of September 4. Organizations should expect larger vulnerability queues and prioritize remediation using evidence of exploitation, asset reachability, compensating controls, and business exposure rather than CVSS scores alone.

Track how attackers are adapting to this technology.
7 events from the most recent confirmed update back to the earliest known activity.
Bugflation updated its AI-assisted vulnerability-attribution ledger to 175 grouped finding pages, 845 unique CVEs, and 40 system profiles. The audit added validated findings, moved unsupported QuickJS and Chromium entries to pending, and reclassified Anthropic's 89 qualifying disclosures into model-specific and model-unspecified groups.
As of September 4, Patch the Planet had assessed 59 codebases and identified 1,646 issues; 1,031 findings were awaiting patches. It had authored 615 patches, opened 400 upstream, merged 215, and received 11 CVE assignments.
Trail of Bits and OpenAI announced Patch the Planet, which pairs security engineers with open-source projects for dedicated reviews, authors patches, and submits them upstream. Participating maintainers receive six months of ChatGPT Pro and conditional access to Codex security tooling.
Anthropic launched Project Glasswing to use Claude Mythos Preview to identify vulnerabilities in critical open-source software. The initiative brought together Anthropic, AWS, Apple, Google, Microsoft, the Linux Foundation, and more than 40 other organizations, backed by $100 million in model-usage credits and funding.
VulnCheck researcher Patrick Garrity reconciled Glasswing's dashboard with its disclosure, CVE, and GHSA ledgers. The review found 26,153 total findings but ledger support for 202 fixed vulnerabilities, while the dashboard claimed 421 upstream fixes; it also identified 18 vulnerabilities patched before Anthropic reported them.
Eleven public, fixed, patched, and vendor-confirmed disclosure cards across eight projects were identified as accepted Project Glasswing work, covering 12 CVEs and five GHSAs. The grouped disclosures did not attribute the findings to a particular Anthropic model, although a separate source explicitly attributed CVE-2026-4747 to Mythos.
Anthropic publicly attributed discovery of LibreOffice vulnerability CVE-2026-8357 to Claude Sonnet 4.6 in a Project Glasswing finding card. The report was characterized as fixed, patched, and vendor-confirmed.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
5 references tracked. Mallory keeps watching after this page renders.
bugflation.com
Open sourceresilientcyber.io
Open sourcevulncheck.com
Open sourcebugflation.com
Open sourcebugflation.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.