Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 35 respecto a la semana anterior
Críticas / altas1418▲ 79 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
14 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.1) | 0.49% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its inference server setup, where a remote attacker may access the inference service without authentication. A successful exploit of this vulnerability may lead to information disclosure and denial of service. | |
| Analizada | Alta (7.8) | 1.3% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its command-line interface, where an attacker could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service. | |
| Analizada | Crítica (9.8) | 0.99% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helper workflow, where an attacker could cause weak authentication. A successful exploit of this vulnerability might lead to code execution, information disclosure, and data tampering. | |
| Analizada | Alta (8.8) | 0.32% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its installation scripts, where an attacker could cause a download of code without integrity check. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 1.3% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in the Telegram bridge component, where an attacker could cause an OS command injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Alta (7.8) | 1.3% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its NIM management component, where an attacker could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service. | |
| Analizada | Alta (7.8) | 1.3% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its status and logs plugin commands, where an attacker could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service. | |
| Analizada | Media (5.5) | 0.17% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw contains a vulnerability where an attacker could cause invocation of process using visible sensitive information. A successful exploit of this vulnerability might lead to information disclosure. | |
| Analizada | Media (6.1) | 0.15% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw contains a vulnerability where an attacker could cause insufficiently protected credentials . A successful exploit of this vulnerability might lead to information disclosure and data tampering. | |
| Analizada | Crítica (9.8) | 0.51% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its deployment process, where an attacker could cause improper certificate validation. A successful exploit of this vulnerability might lead to information disclosure, data tampering, code execution, and escalation of privileges. | |
| Analizada | Alta (7.8) | 0.22% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its migration command, where a local attacker could cause code injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service. | |
| Analizada | Crítica (9.8) | 0.41% | — | Nvidia Nemoclaw | 25/8/2026 | 1/9/2026 | NVIDIA NemoClaw for Linux contains a vulnerability in its installation process, where an attacker could cause execution of untrusted code. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, information disclosure, and denial of service. | |
| Analizada | Media (6.3) | 0.13% | — | Nvidia Nemoclaw | 28/4/2026 | 17/6/2026 | NVIDIA NemoClaw contains a vulnerability in the validateEndpointUrl() SSRF protection component, where an attacker could cause a server-side request forgery by supplying a crafted endpoint URL referencing the 0.0.0.0/8 address range through a blueprint configuration file or CLI flag. A successful exploit of this… | |
| Analizada | Alta (8.6) | 0.40% | — | Nvidia Nemoclaw | 28/4/2026 | 17/6/2026 | NVIDIA NeMoClaw contains a vulnerability in the sandbox environment initialization component, where a remote attacker could cause improper access control by sending prompt-injected content that causes the agent to read and exfiltrate host environment variables not properly restricted during sandbox creation. A… |