Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2761▲ 86 respecto a la semana anterior
Críticas / altas1460▲ 350 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)91▼ 420 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (8.5) | 0.46% | — | Nvidia Container ToolkitAI | 1/7/2026 | 2/7/2026 | NVIDIA Container Toolkit for Linux contains a vulnerability where an attacker could cause a time-of-check time-of-use race condition. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, and data tampering. | |
| Aplazada | Alta (8.5) | 0.83% | — | Nvidia Container ToolkitAI | 17/7/2025 | 17/6/2026 | NVIDIA Container Toolkit for all platforms contains a vulnerability in the update-ldcache hook, where an attacker could cause a link following by using a specially crafted container image. A successful exploit of this vulnerability might lead to data tampering and denial of service. | |
| Aplazada | Crítica (9) | 3.2% | — | Nvidia Container ToolkitAI | 17/7/2025 | 17/6/2026 | NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the container, where an attacker could execute arbitrary code with elevated permissions. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, information disclosure, and… | |
| Analizada | Alta (8.1) | 3.7% | — | Nvidia Container ToolkitNvidia GPU Operator | 12/2/2025 | 17/6/2026 | NVIDIA Container Toolkit for Linux contains a Time-of-Check Time-of-Use (TOCTOU) vulnerability when used with default configuration, where a crafted container image could gain access to the host file system. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of… | |
| Analizada | Media (6.5) | 0.33% | — | Nvidia Container ToolkitNvidia GPU Operator | 28/1/2025 | 17/6/2026 | NVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted container image could lead to untrusted code running in the host’s network namespace. This vulnerability is present only when the NVIDIA Container Toolkit is configured in a nondefault way. A successful exploit of this… | |
| Analizada | Alta (8.4) | 0.67% | — | Nvidia Container ToolkitNvidia GPU Operator | 28/1/2025 | 17/6/2026 | NVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted container image could lead to untrusted code obtaining read and write access to host devices. This vulnerability is present only when the NVIDIA Container Toolkit is configured in a nondefault way. A successful exploit of… | |
| Analizada | Alta (7.6) | 1.1% | — | Nvidia Container ToolkitNvidia GPU Operator | 28/1/2025 | 17/6/2026 | NVIDIA Container Toolkit contains an improper isolation vulnerability where a specially crafted container image could lead to modification of a host binary. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. | |
| Analizada | Media (4.1) | 0.37% | — | Nvidia Container ToolkitNvidia GPU Operator | 5/11/2024 | 17/6/2026 | NVIDIA Container Toolkit and NVIDIA GPU Operator for Linux contain a UNIX vulnerability where a specially crafted container image can lead to the creation of unauthorized files on the host. The name and location of the files cannot be controlled by an attacker. A successful exploit of this vulnerability might lead to… | |
| Analizada | Baja (3.4) | 0.25% | — | Nvidia Container ToolkitNvidia GPU Operator | 26/9/2024 | 17/6/2026 | NVIDIA Container Toolkit 1.16.1 or earlier contains a vulnerability in the default mode of operation allowing a specially crafted container image to create empty files on the host file system. This does not impact use cases where CDI is used. A successful exploit of this vulnerability may lead to data tampering. | |
| Analizada | Alta (8.3) | 41% | — | Nvidia Container ToolkitNvidia GPU Operator | 26/9/2024 | 17/6/2026 | NVIDIA Container Toolkit 1.16.1 or earlier contains a Time-of-check Time-of-Use (TOCTOU) vulnerability when used with default configuration where a specifically crafted container image may gain access to the host file system. This does not impact use cases where CDI is used. A successful exploit of this vulnerability… |