Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2730▼ 551 respecto a la semana anterior
Críticas / altas1294▼ 234 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
1167 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.7) | 0.23% | — | Nvidia Delegated Licensing ServiceAI | 30/9/2025 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to information disclosure. | |
| Aplazada | Media (4.6) | 0.22% | — | Nvidia Delegated Licensing ServiceAI | 30/9/2025 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a SQL injection vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to partial denial of service (UI component). | |
| Aplazada | Baja (2.4) | 0.13% | — | Nvidia Delegated Licensing ServiceAI | 30/9/2025 | 17/6/2026 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an User/Attacker may cause an authorized action. A successful exploit of this vulnerability may lead to information disclosure. | |
| Analizada | Alta (7.8) | 0.24% | — | Nvidia Megatron-lm | 24/9/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in the ensemble_classifer script where malicious data created by an attacker may cause an injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, Information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.24% | — | Nvidia Megatron-lm | 24/9/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in the msdp preprocessing script where malicious data created by an attacker may cause an injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, Information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.24% | — | Nvidia Megatron-lm | 24/9/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in the tasks/orqa/unsupervised/nq.py component, where an attacker may cause a code injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.24% | — | Nvidia Megatron-lm | 24/9/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in the pretrain_gpt script, where malicious data created by an attacker may cause a code injection issue. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Baja (3.3) | 0.16% | — | Nvidia Cuda Toolkit | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit contains a vulnerability in cuobjdump, where an unprivileged user can cause a NULL pointer dereference. A successful exploit of this vulnerability may lead to a limited denial of service. | |
| Modificada | Baja (3.3) | 0.20% | — | Nvidia Cuda Toolkit | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a user may cause an out-of-bounds read by passing a malformed ELF file to nvdisasm. A successful exploit of this vulnerability may lead to a partial denial of service. | |
| Modificada | Media (5.5) | 0.20% | — | Nvidia Cuda Toolkit | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where a user may cause an out-of-bounds write by running nvdisasm on a malicious ELF file. A successful exploit of this vulnerability may lead to denial of service. | |
| Modificada | Alta (7.8) | 0.24% | — | Nvidia Cuda Toolkit | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where an attacker may cause a heap-based buffer overflow by getting the user to run nvdisasm on a malicious ELF file. A successful exploit of this vulnerability may lead to arbitrary code execution at the privilege level of the user running… | |
| Analizada | Alta (7.1) | 0.14% | — | Nvidia Cuda ToolkitNvidia Nvjpeg | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvJPEG where a local authenticated user may cause a GPU out-of-bounds write by providing certain image dimensions. A successful exploit of this vulnerability may lead to denial of service and information disclosure. | |
| Aplazada | Media (4.5) | 0.13% | — | Nvidia NvjpegAI | 24/9/2025 | 17/6/2026 | NVIDIA nvJPEG contains a vulnerability in jpeg encoding where a user may cause an out-of-bounds read by providing a maliciously crafted input image with dimensions that cause integer overflows in array index calculations. A successful exploit of this vulnerability may lead to denial of service. | |
| Analizada | Media (4.7) | 0.13% | — | Nvidia Cuda ToolkitNvidia Nvjpeg | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvJPEG where a local authenticated user may cause a divide by zero error by submitting a specially crafted JPEG file. A successful exploit of this vulnerability may lead to denial of service. | |
| Modificada | Baja (3.3) | 0.20% | — | Nvidia Cuda Toolkit | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a user may cause an out-of-bounds read by passing a malformed ELF file to nvdisasm. A successful exploit of this vulnerability may lead to a partial denial of service. | |
| Analizada | Baja (3.3) | 0.16% | — | Nvidia Cuda Toolkit | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary where a user may cause an out-of-bounds read by passing a malformed ELF file to cuobjdump. A successful exploit of this vulnerability may lead to a partial denial of service. | |
| Analizada | Baja (3.3) | 0.16% | — | Nvidia Cuda Toolkit | 24/9/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a user may cause an out-of-bounds read by passing a malformed ELF file to nvdisasm. A successful exploit of this vulnerability may lead to a partial denial of service. | |
| Modificada | Alta (7.8) | 0.36% | 💥 PoC | Nvidia Cuda Toolkit | 24/9/2025 | 25/9/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in cuobjdump where an attacker may cause a stack-based buffer overflow by getting the user to run cuobjdump on a malicious ELF file. A successful exploit of this vulnerability may lead to arbitrary code execution at the privilege level of the user running… | |
| Aplazada | Media (5.7) | 0.15% | — | Nvidia NvjpegAI | 24/9/2025 | 25/9/2026 | NVIDIA nvJPEG library contains a vulnerability where an attacker can cause an out-of-bounds read by means of a specially crafted JPEG file. A successful exploit of this vulnerability might lead to information disclosure or denial of service. | |
| Aplazada | Media (6.7) | 0.15% | — | Nvidia HGX Management ControllerAINvidia DGX Gb200AINvidia DGX Gb300AINvidia DGX B300AI | 17/9/2025 | 17/6/2026 | NVIDIA HGX & DGX GB200, GB300, B300 contain a vulnerability in the HGX Management Controller (HMC) that may allow a malicious actor with administrative access on the BMC to access the HMC as an administrator. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of… | |
| Analizada | Alta (7.5) | 0.35% | — | Nvidia Triton Inference Server | 17/9/2025 | 17/6/2026 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause a denial of service by loading a misconfigured model. A successful exploit of this vulnerability might lead to denial of service. | |
| Analizada | Alta (7.5) | 0.35% | — | Nvidia Triton Inference Server | 17/9/2025 | 17/6/2026 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause memory corruption by identifying and accessing the shared memory region used by the Python backend. A successful exploit of this vulnerability might lead to denial of service. | |
| Analizada | Alta (7.5) | 0.38% | — | Nvidia Triton Inference Server | 17/9/2025 | 17/6/2026 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an out-of-bounds write through a specially crafted input. A successful exploit of this vulnerability might lead to denial of service. | |
| Analizada | Crítica (9.8) | 0.71% | — | Nvidia Triton Inference Server | 17/9/2025 | 17/6/2026 | NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause a remote code execution by manipulating the model name parameter in the model control APIs. A successful exploit of this vulnerability might lead to remote code execution, denial of… | |
| Analizada | Crítica (9.8) | 0.45% | — | Nvidia Triton Inference Server | 17/9/2025 | 17/6/2026 | NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker may cause an improper input validation issue. A successful exploit of this vulnerability may lead to code execution. |