Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2741▼ 480 respecto a la semana anterior
Críticas / altas1308▼ 182 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)226▼ 276 respecto a la semana anterior
1167 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 2.6% | 💥 Exploit | Nvidia Triton Inference Server | 20/5/2026 | 24/7/2026 | NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure. | |
| Analizada | Crítica (9.8) | 0.58% | — | Nvidia Triton Inference Server | 20/5/2026 | 24/7/2026 | NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of this vulnerability might lead to escalation of privileges, denial of service, or information disclosure. | |
| Analizada | Crítica (9.8) | 0.59% | — | Nvidia Tensorrt LLM | 20/5/2026 | 24/7/2026 | NVIDIA TRT-LLM for any platform contains a vulnerability in RPC testing, where an attacker could cause an unsafe deserialization. A successful exploit of this vulnerability might lead to code execution, denial of service, data tampering, and information disclosure. | |
| Analizada | Alta (7.5) | 0.47% | — | Nvidia Tensorrt LLM | 20/5/2026 | 24/7/2026 | NVIDIA TRT-LLM for any platform contains a vulnerability where an attacker could cause an unchecked return value to a null pointer dereference. A successful exploit of this vulnerability might lead to denial of service. | |
| Analizada | Crítica (9.8) | 0.38% | — | Nvidia Tensorrt LLM | 20/5/2026 | 24/7/2026 | NVIDIA TRT-LLM for any platform contains a deserialization vulnerability and unsafe serialized handle. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure. | |
| Analizada | Crítica (9.8) | 0.57% | — | Nvidia Tensorrt LLM | 20/5/2026 | 24/7/2026 | NVIDIA TRT-LLM for any platform contains a vulnerability in MPI server, where an attacker could cause an unsafe deserialization. A successful exploit of this vulnerability might lead to code execution, denial of service, data tampering, and information disclosure. | |
| Analizada | Media (6.3) | 0.13% | — | Nvidia Nemoclaw | 28/4/2026 | 17/6/2026 | NVIDIA NemoClaw contains a vulnerability in the validateEndpointUrl() SSRF protection component, where an attacker could cause a server-side request forgery by supplying a crafted endpoint URL referencing the 0.0.0.0/8 address range through a blueprint configuration file or CLI flag. A successful exploit of this… | |
| Analizada | Alta (8.6) | 0.40% | — | Nvidia Nemoclaw | 28/4/2026 | 17/6/2026 | NVIDIA NeMoClaw contains a vulnerability in the sandbox environment initialization component, where a remote attacker could cause improper access control by sending prompt-injected content that causes the agent to read and exfiltrate host environment variables not properly restricted during sandbox creation. A… | |
| Analizada | Media (6.5) | 0.36% | — | Nvidia Nvflare | 28/4/2026 | 17/6/2026 | NVIDIA Flare SDK contains a vulnerability where an Attacker may cause an Improper Input Validation by path traversing. A successful exploit of this vulnerability may lead to information disclosure. | |
| Analizada | Alta (8.8) | 0.48% | — | Nvidia Nvflare | 28/4/2026 | 17/6/2026 | NVIDIA FLARE SDK contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sending a malicious FOBS- encoded message. A successful exploit of this vulnerability might lead to code execution. | |
| Analizada | Crítica (9.8) | 0.57% | — | Nvidia Nvflare | 28/4/2026 | 17/6/2026 | NVIDIA NVFlare Dashboard contains a vulnerability in the user management and authentication system where an unauthenticated attacker may cause authorization bypass through user-controlled key. A successful exploit of this vulnerability may lead to privilege escalation, data tampering, information disclosure, code… | |
| Pendiente de análisis | Alta (8.2) | 0.32% | — | Nvidia Cuda-qAI | 21/4/2026 | 17/6/2026 | NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated attacker could cause an out-of-bounds read by sending a maliciously crafted request. A successful exploit of this vulnerability might lead to denial of service and information disclosure. | |
| Pendiente de análisis | Alta (7.7) | 0.24% | — | Nvidia KAI SchedulerAI | 21/4/2026 | 17/6/2026 | NVIDIA KAI Scheduler contains a vulnerability where an attacker could access API endpoints without authorization. A successful exploit of this vulnerability might lead to information disclosure. | |
| Pendiente de análisis | Media (4.3) | 0.19% | — | Nvidia KAI SchedulerAI | 21/4/2026 | 17/6/2026 | NVIDIA KAI Scheduler contains a vulnerability where an attacker could cause improper authorization through cross-namespace pod references. A successful exploit of this vulnerability might lead to data tampering. | |
| Analizada | Alta (7.5) | 0.47% | — | Nvidia Triton Inference Server | 7/4/2026 | 17/6/2026 | NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request header to the server. A successful exploit of this vulnerability might lead to denial of service. | |
| Analizada | Alta (7.5) | 0.52% | — | Nvidia Triton Inference Server | 7/4/2026 | 17/6/2026 | NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service. | |
| Analizada | Alta (7.5) | 0.52% | — | Nvidia Triton Inference Server | 7/4/2026 | 17/6/2026 | NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service. | |
| Analizada | Alta (7.3) | 0.26% | — | Nvidia Data Loading Library | 7/4/2026 | 9/7/2026 | NVIDIA DALI contains a vulnerability where an attacker could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to arbitrary code execution. | |
| Analizada | Media (4.8) | 0.48% | — | Nvidia Triton Inference Server | 7/4/2026 | 17/6/2026 | NVIDIA Triton Inference Server contains a vulnerability in triton server where an attacker may cause an information disclosure by uploading a model configuration. A successful exploit of this vulnerability may lead to information disclosure or denial of service. | |
| Analizada | Alta (7.5) | 0.53% | — | Nvidia Triton Inference Server | 7/4/2026 | 17/6/2026 | NVIDIA Triton Inference Server contains a vulnerability where insufficient input validation and a large number of outputs could cause a server crash. A successful exploit of this vulnerability might lead to denial of service. | |
| Analizada | Alta (8.8) | 0.31% | — | Nvidia Bionemo Framework | 31/3/2026 | 24/7/2026 | NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering. | |
| Analizada | Crítica (9.8) | 0.47% | — | Nvidia Bionemo Framework | 31/3/2026 | 24/7/2026 | NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering. | |
| Analizada | Media (6.8) | 0.26% | — | Nvidia Jetson Linux | 31/3/2026 | 24/7/2026 | NVIDIA Jetson Linux has vulnerability in initrd, where an unprivileged attacker with physical access coul inject incorrect command line arguments. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, data tampering, and information disclosure. | |
| Analizada | Media (5.5) | 0.12% | — | Nvidia Jetson Linux | 31/3/2026 | 24/7/2026 | NVIDIA Jetson Linux has a vulnerability in initrd, where the nvluks trusted application is not disabled. A successful exploit of this vulnerability might lead to information disclosure. | |
| Analizada | Crítica (9.4) | 0.35% | — | Nvidia Jetson Linux | 31/3/2026 | 24/7/2026 | NVIDIA Jetson for JetPack contains a vulnerability in the system initialization logic, where an unprivileged attacker could cause the initialization of a resource with an insecure default. A successful exploit of this vulnerability might lead to information disclosure of encrypted data, data tampering, and partial… |