Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2659▼ 692 respecto a la semana anterior
Críticas / altas1261▼ 300 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
1167 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.1) | 0.19% | — | Nvidia Display DriverAI | 2/8/2025 | 17/6/2026 | NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker might cause an improper index validation by issuing a call with crafted parameters. A successful exploit of this vulnerability might lead to data tampering or denial of service. | |
| Aplazada | Alta (7.3) | 0.18% | — | Nvidia Display DriverAI | 2/8/2025 | 17/6/2026 | NVIDIA Display Driver for Linux and Windows contains a vulnerability in the kernel mode driver, where an attacker could access memory outside bounds permitted under normal use cases. A successful exploit of this vulnerability might lead to denial of service, data tampering, or information disclosure. | |
| Aplazada | Alta (7.8) | 0.17% | — | Nvidia Installer FOR WindowsAI | 2/8/2025 | 17/6/2026 | NVIDIA Installer for Windows contains a vulnerability where an attacker may be able to escalate privileges. A successful exploit of this vulnerability may lead to escalation of privileges, denial of service, code execution, information disclosure and data tampering. | |
| Aplazada | Media (5.5) | 0.13% | — | Nvidia Omniverse LauncherAI | 31/7/2025 | 17/6/2026 | NVIDIA Omniverse Launcher for Windows and Linux contains a vulnerability in the launcher logs, where a user could cause sensitive information to be written to the log files through proxy servers. A successful exploit of this vulnerability might lead to information disclosure. | |
| Aplazada | Media (4.7) | 0.15% | — | Nvidia Jetson LinuxAI | 17/7/2025 | 17/6/2026 | NVIDIA Jetson Linux contains a vulnerability in the kernel where an attacker may cause an exposure of sensitive information due to a shared microarchitectural predictor state that influences transient execution. A successful exploit of this vulnerability may lead to information disclosure. | |
| Aplazada | Alta (7.1) | 0.21% | — | Nvidia Jetson LinuxAI | 17/7/2025 | 17/6/2026 | NVIDIA Jetson Linux contains a vulnerability in UEFI Management mode, where an unprivileged local attacker may cause exposure of sensitive information via a side channel vulnerability. A successful exploit of this vulnerability might lead to code execution, data tampering, denial of service, and information disclosure. | |
| Aplazada | Alta (8.5) | 0.89% | — | Nvidia Container ToolkitAI | 17/7/2025 | 17/6/2026 | NVIDIA Container Toolkit for all platforms contains a vulnerability in the update-ldcache hook, where an attacker could cause a link following by using a specially crafted container image. A successful exploit of this vulnerability might lead to data tampering and denial of service. | |
| Aplazada | Crítica (9) | 3.3% | 💥 PoC | Nvidia Container ToolkitAI | 17/7/2025 | 17/6/2026 | NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the container, where an attacker could execute arbitrary code with elevated permissions. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, information disclosure, and… | |
| Aplazada | Alta (7.6) | 0.19% | — | Nvidia Doca-hostAIMellanox OfedAI | 17/7/2025 | 17/6/2026 | NVIDIA DOCA-Host and Mellanox OFED contain a vulnerability in the VGT+ feature, where an attacker on a VM might cause escalation of privileges and denial of service on the VLAN. | |
| Analizada | Media (4.3) | 0.23% | — | Nvidia Aistore | 24/6/2025 | 17/6/2026 | NVIDIA AIStore contains a vulnerability in the AIS Operator where a user may gain elevated k8s cluster access by using the ServiceAccount attached to the ClusterRole. A successful exploit of this vulnerability may lead to information disclosure. | |
| Analizada | Alta (7.8) | 0.28% | — | Nvidia Megatron-lm | 24/6/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacker may cause a code injection issue by providing a malicious file. A successful exploit of this vulnerability may lead to Code Execution, Escalation of Privileges, Information Disclosure and Data Tampering. | |
| Analizada | Alta (7.8) | 0.28% | — | Nvidia Megatron-lm | 24/6/2025 | 17/6/2026 | NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacker may cause a code injection issue by providing a malicious file. A successful exploit of this vulnerability may lead to Code Execution, Escalation of Privileges, Information Disclosure and Data Tampering. | |
| Analizada | Alta (7.5) | 0.33% | — | Nvidia Nvdebug | 18/6/2025 | 17/6/2026 | The NVIDIA NVDebug tool contains a vulnerability that may allow an actor to gain access to restricted components. A successful exploit of this vulnerability may lead to information disclosure. | |
| Analizada | Alta (7.8) | 0.30% | 💥 PoC | Nvidia Cuda Toolkit | 27/5/2025 | 17/6/2026 | NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a failure to check the length of a buffer could allow a user to cause the tool to crash or execute arbitrary code by passing in a malformed ELF file. A successful exploit of this vulnerability might lead to arbitrary code… | |
| Aplazada | Media (5.5) | 0.16% | — | Nvidia Vgpu SoftwareAI | 1/5/2025 | 17/6/2026 | NVIDIA vGPU software for Windows and Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it allows a guest to consume uncontrolled resources. A successful exploit of this vulnerability might lead to denial of service. | |
| Aplazada | Alta (8.8) | 0.28% | — | Nvidia Tensorrt-llmAI | 1/5/2025 | 17/6/2026 | NVIDIA TensorRT-LLM for any platform contains a vulnerability in python executor where an attacker may cause a data validation issue by local access to the TRTLLM server. A successful exploit of this vulnerability may lead to code execution, information disclosure and data tampering. | |
| Aplazada | Media (5.5) | 0.15% | — | Nvidia Vgpu SoftwareAINvidia Virtual GPU ManagerAI | 1/5/2025 | 17/6/2026 | NVIDIA vGPU software for Windows and Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it allows a guest to access global resources. A successful exploit of this vulnerability might lead to denial of service. | |
| Aplazada | Alta (7.8) | 0.22% | — | Nvidia GPU Display Driver FOR LinuxAI | 1/5/2025 | 17/6/2026 | NVIDIA GPU Display Driver for Linux contains a vulnerability which could allow an unprivileged attacker to escalate permissions. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. | |
| Aplazada | Baja (2.5) | 0.17% | — | Nvidia NvcontainerAIOpensslAI | 22/4/2025 | 17/6/2026 | NVIDIA NvContainer service for Windows contains a vulnerability in its usage of OpenSSL, where an attacker could exploit a hard-coded constant issue by copying a malicious DLL in a hard-coded path. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges,… | |
| Analizada | Crítica (9.8) | 0.69% | — | Nvidia Nemo | 22/4/2025 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability where a user could cause an improper control of generation of code by remote code execution. A successful exploit of this vulnerability might lead to code execution and data tampering. | |
| Analizada | Crítica (9.8) | 0.63% | — | Nvidia Nemo | 22/4/2025 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability where an attacker could cause an improper limitation of a pathname to a restricted directory by an arbitrary file write. A successful exploit of this vulnerability might lead to code execution and data tampering. | |
| Analizada | Crítica (9.8) | 0.68% | — | Nvidia Nemo | 22/4/2025 | 17/6/2026 | NVIDIA NeMo Framework contains a vulnerability where a user could cause a deserialization of untrusted data by remote code execution. A successful exploit of this vulnerability might lead to code execution and data tampering. | |
| Analizada | Crítica (9.8) | 0.52% | — | Nvidia Nemo | 11/3/2025 | 17/6/2026 | NVIDIA Nemo Framework contains a vulnerability where a user could cause a relative path traversal issue by arbitrary file write. A successful exploit of this vulnerability may lead to code execution and data tampering. | |
| Analizada | Crítica (9.1) | 2.1% | — | Nvidia Riva | 11/3/2025 | 17/6/2026 | NVIDIA Riva contains a vulnerability where a user could cause an improper access control issue. A successful exploit of this vulnerability might lead to data tampering or denial of service. | |
| Analizada | Crítica (9.8) | 2.0% | — | Nvidia Riva | 11/3/2025 | 17/6/2026 | NVIDIA Riva contains a vulnerability where a user could cause an improper access control issue. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, denial of service, or information disclosure. |