GLM-5.3 Uncovers 1,097 Critical Vulnerabilities Post-Training

GLM-5.3 Uncovers 1,097 Critical Vulnerabilities Post-Training

First seen 14 Aug 2026, 16:28 UTC TechtimesHeise.DeFeeds.4Sysopswww.aisi.gov.ukheise-conferences.de+1 88% similarity 70.2

Article Content

Browse articles
ThreatCluster

Z.ai has released GLM-5.3, an open-weight AI model that unexpectedly identified 1,097 critical and high-severity vulnerabilities in real-world software. The model's capabilities were enhanced solely through post-training, leading to improved performance in cybersecurity tasks, including multi-step exploit-chain reasoning. This version has been reported to find vulnerabilities in widely used software like the Linux kernel and WinRAR, with some flaws dating back 45 years. The launch was delayed for a safety review due to the unexpected findings. While GLM-5.3 shows significant improvements over its predecessor, it still lags behind some competitors in specific benchmarks. The model is currently available only to paying customers, with a broader release planned after further security evaluations.

Key Points: • GLM-5.3 discovered 1,097 critical vulnerabilities in real-world software. • The model's enhancements came solely from post-training improvements. • Z.ai plans to release the model publicly after a two-week safety review.

ThreatCluster AI How this analysis works

Timeline

2026-08-14
GLM-5.3 released
Z.ai launched GLM-5.3, revealing its unexpected ability to find 1,097 critical vulnerabilities.
Techtimes
2026-08-14
Security review initiated
Z.ai delayed the public release of GLM-5.3 for a safety review due to the critical vulnerabilities discovered.
Heise.De
2026-08-14
Vulnerabilities identified
GLM-5.3 uncovered 1,097 vulnerabilities, including critical flaws in major software like Linux and WinRAR.
Heise.De

Community

Browse all →