Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2739▼ 501 respecto a la semana anterior
Críticas / altas1301▼ 201 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 277 respecto a la semana anterior
–

1167 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaCrítica (9.8)0.64%—Nvidia Nemo24/3/202617/6/2026
NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.
AnalizadaAlta (7.5)0.40%—Nvidia Triton Inference Server24/3/202617/6/2026
NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of service by providing a large compressed payload. A successful exploit of this vulnerability may lead to denial of service.
AnalizadaCrítica (9.8)0.65%—Nvidia Nemo24/3/202617/6/2026
NVIDIA NeMo Framework contains a vulnerability in checkpoint loading where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.
AnalizadaAlta (7.8)0.21%—Nvidia Megatron-lm24/3/202617/6/2026
NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
AnalizadaAlta (7.8)0.21%—Nvidia Megatron-lm24/3/202617/6/2026
NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may cause an RCE by convincing a user to load a maliciously crafted input. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
AnalizadaAlta (7.8)0.21%—Nvidia Megatron-lm24/3/202617/6/2026
NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
Pendiente de análisisAlta (7.8)0.21%—Nvidia Model OptimizerAI24/3/202617/6/2026
NVIDIA Model Optimizer for Windows and Linux contains a vulnerability in the ONNX quantization feature, where a user could cause unsafe deserialization by providing a specially crafted input file. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and…
AnalizadaAlta (7.5)0.32%—Nvidia Triton Inference Server24/3/202617/6/2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause internal state corruption. A successful exploit of this vulnerability may lead to a denial of service.
AnalizadaAlta (7.8)0.21%—Nvidia Megatron-lm24/3/202617/6/2026
NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
AnalizadaAlta (7.8)0.32%—Nvidia Megatron-lm24/3/202617/6/2026
NVIDIA Megatron LM contains a vulnerability in quantization configuration loading, which could allow remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
Pendiente de análisisCrítica (9)0.58%—Nvidia ApexAIPytorchAI24/3/202617/6/2026
NVIDIA APEX for Linux contains a vulnerability where an unauthorized attacker could cause a deserialization of untrusted data. This vulnerability affects environments that use PyTorch versions earlier than 2.6. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of…
Pendiente de análisisMedia (5.9)0.31%—Nvidia B300 MCUAINvidia CX8 MCUAI24/3/202617/6/2026
NVIDIA B300 MCU contains a vulnerability in the CX8 MCU that could allow a malicious actor to modify unsupported registries, causing a bad state. A successful exploit of this vulnerability might lead to denial of service and data tampering.
AnalizadaAlta (7.5)0.32%—Nvidia Triton Inference Server24/3/202617/6/2026
NVIDIA Triton Inference Server Sagemaker HTTP server contains a vulnerability where an attacker may cause an exception. A successful exploit of this vulnerability may lead to denial of service.
Pendiente de análisisMedia (6.8)0.25%—Nvidia Snap-4AI24/3/202617/6/2026
NVIDIA SNAP-4 Container contains a vulnerability in the configuration interface where an attacker on a VM may cause an incorrect calculation of buffer size by sending crafted configurations. A successful exploit of this vulnerability may lead to crash of the SNAP service, causing denial of service of the storage…
Pendiente de análisisMedia (6.8)0.25%—Nvidia Snap-4AI24/3/202617/6/2026
NVIDIA SNAP-4 Container contains a vulnerability in the VIRTIO-BLK component where a malicious guest VM may cause use of out-of-range pointer offset by sending crafted messages. A successful exploit of this vulnerability may lead to a denial of service of the DPA and impact the availability of storage to other VMs.
AnalizadaAlta (7.5)0.59%—Nvidia Delegated License Service24/2/202617/6/2026
NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an attacker could exploit an improper authentication issue. A successful exploit of this vulnerability might lead to information disclosure.
AnalizadaAlta (8.8)0.36%—Nvidia Cumulus LinuxNvidia Nvos24/2/202617/6/2026
NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could inject a command. A successful exploit of this vulnerability might lead to escalation of privileges.
AnalizadaAlta (8.8)0.80%—Nvidia Cumulus LinuxNvidia Nvos24/2/202617/6/2026
NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could inject a command. A successful exploit of this vulnerability might lead to escalation of privileges.
AnalizadaAlta (8.8)0.53%—Nvidia Cumulus LinuxNvidia Nvos24/2/202617/6/2026
NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could run an unauthorized command. A successful exploit of this vulnerability might lead to escalation of privileges.
AnalizadaAlta (7.3)0.20%—Nvidia Nemo18/2/202617/6/2026
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.
AnalizadaAlta (7.8)0.21%—Nvidia Nemo18/2/202617/6/2026
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.
AnalizadaAlta (7.8)0.23%—Nvidia Nemo18/2/202617/6/2026
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.
AnalizadaAlta (7.8)0.23%—Nvidia Nemo18/2/202617/6/2026
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.
AnalizadaAlta (7.8)0.18%—Nvidia Nemo18/2/202617/6/2026
NVIDIA NeMo Framework for all platforms contains a vulnerability in a voice-preprocessing script, where malicious input created by an attacker could cause a code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
AnalizadaAlta (7.8)0.98%—Nvidia Nemo18/2/202617/6/2026
NVIDIA NeMo Framework for all platforms contains a vulnerability in the ASR Evaluator utility, where a user could cause a command injection by supplying crafted input to a configuration parameter. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, or…
Orbitaley — Vulnerabilidades