Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 501 respecto a la semana anterior
Críticas / altas1301▼ 201 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 277 respecto a la semana anterior
1167 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 0.64% | — | Nvidia Nemo | 24/3/2026 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering. | |
| Analizada | Alta (7.5) | 0.40% | — | Nvidia Triton Inference Server | 24/3/2026 | 17/6/2026 | NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of service by providing a large compressed payload. A successful exploit of this vulnerability may lead to denial of service. | |
| Analizada | Crítica (9.8) | 0.65% | — | Nvidia Nemo | 24/3/2026 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability in checkpoint loading where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering. | |
| Analizada | Alta (7.8) | 0.21% | — | Nvidia Megatron-lm | 24/3/2026 | 17/6/2026 | NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.21% | — | Nvidia Megatron-lm | 24/3/2026 | 17/6/2026 | NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may cause an RCE by convincing a user to load a maliciously crafted input. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.21% | — | Nvidia Megatron-lm | 24/3/2026 | 17/6/2026 | NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Pendiente de análisis | Alta (7.8) | 0.21% | — | Nvidia Model OptimizerAI | 24/3/2026 | 17/6/2026 | NVIDIA Model Optimizer for Windows and Linux contains a vulnerability in the ONNX quantization feature, where a user could cause unsafe deserialization by providing a specially crafted input file. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and… | |
| Analizada | Alta (7.5) | 0.32% | — | Nvidia Triton Inference Server | 24/3/2026 | 17/6/2026 | NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause internal state corruption. A successful exploit of this vulnerability may lead to a denial of service. | |
| Analizada | Alta (7.8) | 0.21% | — | Nvidia Megatron-lm | 24/3/2026 | 17/6/2026 | NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.32% | — | Nvidia Megatron-lm | 24/3/2026 | 17/6/2026 | NVIDIA Megatron LM contains a vulnerability in quantization configuration loading, which could allow remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Pendiente de análisis | Crítica (9) | 0.58% | — | Nvidia ApexAIPytorchAI | 24/3/2026 | 17/6/2026 | NVIDIA APEX for Linux contains a vulnerability where an unauthorized attacker could cause a deserialization of untrusted data. This vulnerability affects environments that use PyTorch versions earlier than 2.6. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of… | |
| Pendiente de análisis | Media (5.9) | 0.31% | — | Nvidia B300 MCUAINvidia CX8 MCUAI | 24/3/2026 | 17/6/2026 | NVIDIA B300 MCU contains a vulnerability in the CX8 MCU that could allow a malicious actor to modify unsupported registries, causing a bad state. A successful exploit of this vulnerability might lead to denial of service and data tampering. | |
| Analizada | Alta (7.5) | 0.32% | — | Nvidia Triton Inference Server | 24/3/2026 | 17/6/2026 | NVIDIA Triton Inference Server Sagemaker HTTP server contains a vulnerability where an attacker may cause an exception. A successful exploit of this vulnerability may lead to denial of service. | |
| Pendiente de análisis | Media (6.8) | 0.25% | — | Nvidia Snap-4AI | 24/3/2026 | 17/6/2026 | NVIDIA SNAP-4 Container contains a vulnerability in the configuration interface where an attacker on a VM may cause an incorrect calculation of buffer size by sending crafted configurations. A successful exploit of this vulnerability may lead to crash of the SNAP service, causing denial of service of the storage… | |
| Pendiente de análisis | Media (6.8) | 0.25% | — | Nvidia Snap-4AI | 24/3/2026 | 17/6/2026 | NVIDIA SNAP-4 Container contains a vulnerability in the VIRTIO-BLK component where a malicious guest VM may cause use of out-of-range pointer offset by sending crafted messages. A successful exploit of this vulnerability may lead to a denial of service of the DPA and impact the availability of storage to other VMs. | |
| Analizada | Alta (7.5) | 0.59% | — | Nvidia Delegated License Service | 24/2/2026 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an attacker could exploit an improper authentication issue. A successful exploit of this vulnerability might lead to information disclosure. | |
| Analizada | Alta (8.8) | 0.36% | — | Nvidia Cumulus LinuxNvidia Nvos | 24/2/2026 | 17/6/2026 | NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could inject a command. A successful exploit of this vulnerability might lead to escalation of privileges. | |
| Analizada | Alta (8.8) | 0.80% | — | Nvidia Cumulus LinuxNvidia Nvos | 24/2/2026 | 17/6/2026 | NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could inject a command. A successful exploit of this vulnerability might lead to escalation of privileges. | |
| Analizada | Alta (8.8) | 0.53% | — | Nvidia Cumulus LinuxNvidia Nvos | 24/2/2026 | 17/6/2026 | NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could run an unauthorized command. A successful exploit of this vulnerability might lead to escalation of privileges. | |
| Analizada | Alta (7.3) | 0.20% | — | Nvidia Nemo | 18/2/2026 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.21% | — | Nvidia Nemo | 18/2/2026 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.23% | — | Nvidia Nemo | 18/2/2026 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.23% | — | Nvidia Nemo | 18/2/2026 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.18% | — | Nvidia Nemo | 18/2/2026 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability in a voice-preprocessing script, where malicious input created by an attacker could cause a code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.98% | — | Nvidia Nemo | 18/2/2026 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability in the ASR Evaluator utility, where a user could cause a command injection by supplying crafted input to a configuration parameter. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, or… |