Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
1167 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 0.47% | — | Nvidia Nvdebug | 9/9/2025 | 17/6/2026 | The NVIDIA NVDebug tool contains a vulnerability that may allow an actor to run code on the platform host as a non-privileged user. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure and data tampering. | |
| Analizada | Crítica (9.8) | 0.75% | — | Nvidia Nvdebug | 9/9/2025 | 17/6/2026 | The NVIDIA NVDebug tool contains a vulnerability that may allow an actor to write files to restricted components. A successful exploit of this vulnerability may lead to information disclosure, denial of service, and data tampering. | |
| Analizada | Crítica (9.8) | 0.33% | — | Nvidia Nvdebug | 9/9/2025 | 17/6/2026 | The NVIDIA NVDebug tool contains a vulnerability that may allow an actor to gain access to a privileged account . A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure and data tampering. | |
| Aplazada | Media (4.2) | 0.12% | — | Nvidia HGXAINvidia DGXAI | 4/9/2025 | 17/6/2026 | NVIDIA HGX and DGX contain a vulnerability where a misconfiguration of the LS10 could enable an attacker to set an unsafe debug access level. A successful exploit of this vulnerability might lead to denial of service. | |
| Aplazada | Media (4.2) | 0.12% | — | Nvidia HGXAINvidia DGXAI | 4/9/2025 | 17/6/2026 | NVIDIA HGX and DGX contain a vulnerability where a misconfiguration of the VBIOS could enable an attacker to set an unsafe debug access level. A successful exploit of this vulnerability might lead to denial of service. | |
| Aplazada | Media (6.3) | 0.16% | — | Nvidia ConnectxAI | 4/9/2025 | 17/6/2026 | NVIDIA ConnectX contains a vulnerability in the management interface, where an attacker with local access could cause incorrect authorization to modify the configuration. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, and data tampering. | |
| Aplazada | Media (5.5) | 0.17% | — | Nvidia Cumulus LinuxAINvidia NvosAI | 4/9/2025 | 17/6/2026 | NVIDIA Cumulus Linux and NVOS products contain a vulnerability, where hashed user passwords are not properly suppressed in log files, potentially disclosing information to unauthorized users. | |
| Aplazada | Media (6.5) | 0.29% | — | Nvidia Mellanox DpdkAINvidia Poll Mode DriverAI | 4/9/2025 | 17/6/2026 | NVIDIA Mellanox DPDK contains a vulnerability in Poll Mode Driver (PMD), where an attacker on a VM in the system might be able to cause information disclosure and denial of service on the network interface. | |
| Aplazada | Alta (7.3) | 0.15% | — | Nvidia DocaAI | 4/9/2025 | 17/6/2026 | NVIDIA DOCA contains a vulnerability in the collectx-dpeserver Debian package for arm64 that could allow an attacker with low privileges to escalate privileges. A successful exploit of this vulnerability might lead to escalation of privileges. | |
| Aplazada | Alta (8.7) | 0.15% | — | Nvidia BluefieldAI | 4/9/2025 | 17/6/2026 | NVIDIA BlueField contains a vulnerability in the management interface, where an attacker with local access could cause incorrect authorization to modify the configuration. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, and data tampering. | |
| Aplazada | Alta (7.3) | 0.15% | — | Nvidia DocaAI | 4/9/2025 | 30/9/2026 | NVIDIA DOCA contains a vulnerability in the collectx-clxapidev Debian package that could allow an actor with low privileges to escalate privileges. A successful exploit of this vulnerability might lead to escalation of privileges. | |
| Analizada | Alta (7.8) | 0.25% | — | Nvidia Nemo | 26/8/2025 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability in the export and deploy component, where malicious data created by an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data… | |
| Analizada | Alta (7.8) | 0.25% | — | Nvidia Nemo | 26/8/2025 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability in the NLP component, where malicious data created by an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.25% | — | Nvidia Nemo | 26/8/2025 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability in the NLP component, where malicious data created by an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.25% | — | Nvidia Nemo | 26/8/2025 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability in the retrieval services component, where malicious data created by an attacker could cause a code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.29% | — | Nvidia Nemo Curator | 26/8/2025 | 17/6/2026 | NVIDIA NeMo Curator for all platforms contains a vulnerability where a malicious file created by an attacker could allow code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.21% | — | Nvidia Megatron-lm | 13/8/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in the megatron/training/ arguments.py component where an attacker could cause a code injection issue by providing a malicious input. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure,… | |
| Analizada | Alta (7.8) | 0.21% | — | Nvidia Megatron-lm | 13/8/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in the tools component, where an attacker may exploit a code injection issue. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Crítica (9.8) | 1.1% | — | Nvidia Nemo | 13/8/2025 | 17/6/2026 | NVIDIA NeMo library for all platforms contains a vulnerability in the model loading component, where an attacker could cause code injection by loading .nemo files with maliciously crafted metadata. A successful exploit of this vulnerability may lead to remote code execution and data tampering. | |
| Analizada | Crítica (9.8) | 0.57% | — | Nvidia Nemo | 13/8/2025 | 17/6/2026 | NVIDIA NeMo Framework for all platforms contains a vulnerability where a user could cause a deserialization of untrusted data by remote code execution. A successful exploit of this vulnerability might lead to code execution and data tampering. | |
| Aplazada | Alta (7.8) | 0.74% | — | Nvidia Merlin Transformers4recAI | 13/8/2025 | 17/6/2026 | NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability in a python dependency, where an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Aplazada | Alta (7.8) | 0.62% | — | Nvidia Isaac-gr00tAI | 13/8/2025 | 17/6/2026 | NVIDIA Isaac-GR00T for all platforms contains a vulnerability in a Python component where an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 0.23% | — | Nvidia Apex | 13/8/2025 | 17/6/2026 | NVIDIA Apex for all platforms contains a vulnerability in a Python component where an attacker could cause a code injection issue by providing a malicious file. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Aplazada | Alta (7.8) | 0.20% | — | Nvidia WebdatasetAI | 13/8/2025 | 17/6/2026 | NVIDIA WebDataset for all platforms contains a vulnerability where an attacker could execute arbitrary code with elevated permissions. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, information disclosure, and denial of service. | |
| Analizada | Alta (7.5) | 0.51% | — | Nvidia Triton Inference Server | 6/8/2025 | 17/6/2026 | NVIDIA Triton Inference Server for Windows and Linux and the Tensor RT backend contain a vulnerability where an attacker could cause an underflow by a specific model configuration and a specific input. A successful exploit of this vulnerability might lead to denial of service. |