Vulnerabilities (CVE)

Filtered by vendor Nvidia Subscribe
Total 798 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-24231 1 Nvidia 1 Nemoclaw 2026-06-17 N/A 6.3 MEDIUM
NVIDIA NemoClaw contains a vulnerability in the validateEndpointUrl() SSRF protection component, where an attacker could cause a server-side request forgery by supplying a crafted endpoint URL referencing the 0.0.0.0/8 address range through a blueprint configuration file or CLI flag. A successful exploit of this vulnerability may lead to information disclosure.
CVE-2026-24222 1 Nvidia 1 Nemoclaw 2026-06-17 N/A 8.6 HIGH
NVIDIA NeMoClaw contains a vulnerability in the sandbox environment initialization component, where a remote attacker could cause improper access control by sending prompt-injected content that causes the agent to read and exfiltrate host environment variables not properly restricted during sandbox creation. A successful exploit of this vulnerability might lead to information disclosure.
CVE-2026-24204 3 Apple, Linux, Nvidia 3 Macos, Linux Kernel, Nvflare 2026-06-17 N/A 6.5 MEDIUM
NVIDIA Flare SDK contains a vulnerability where an Attacker may cause an Improper Input Validation by path traversing. A successful exploit of this vulnerability may lead to information disclosure.
CVE-2026-24186 3 Apple, Linux, Nvidia 3 Macos, Linux Kernel, Nvflare 2026-06-17 N/A 8.8 HIGH
NVIDIA FLARE SDK contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sending a malicious FOBS- encoded message. A successful exploit of this vulnerability might lead to code execution.
CVE-2026-24178 3 Apple, Linux, Nvidia 3 Macos, Linux Kernel, Nvflare 2026-06-17 N/A 9.8 CRITICAL
NVIDIA NVFlare Dashboard contains a vulnerability in the user management and authentication system where an unauthenticated attacker may cause authorization bypass through user-controlled key. A successful exploit of this vulnerability may lead to privilege escalation, data tampering, information disclosure, code execution, and denial of service.
CVE-2026-24175 1 Nvidia 1 Triton Inference Server 2026-06-17 N/A 7.5 HIGH
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request header to the server. A successful exploit of this vulnerability might lead to denial of service.
CVE-2026-24174 1 Nvidia 1 Triton Inference Server 2026-06-17 N/A 7.5 HIGH
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service.
CVE-2026-24173 1 Nvidia 1 Triton Inference Server 2026-06-17 N/A 7.5 HIGH
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service.
CVE-2026-24159 1 Nvidia 1 Nemo 2026-06-17 N/A 7.8 HIGH
NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.
CVE-2026-24158 1 Nvidia 1 Triton Inference Server 2026-06-17 N/A 7.5 HIGH
NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of service by providing a large compressed payload. A successful exploit of this vulnerability may lead to denial of service.
CVE-2026-24157 1 Nvidia 1 Nemo 2026-06-17 N/A 7.8 HIGH
NVIDIA NeMo Framework contains a vulnerability in checkpoint loading where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.
CVE-2026-24152 1 Nvidia 1 Megatron-lm 2026-06-17 N/A 7.8 HIGH
NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
CVE-2026-24151 1 Nvidia 1 Megatron-lm 2026-06-17 N/A 7.8 HIGH
NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may cause an RCE by convincing a user to load a maliciously crafted input. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
CVE-2026-24150 1 Nvidia 1 Megatron-lm 2026-06-17 N/A 7.8 HIGH
NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
CVE-2026-24147 1 Nvidia 1 Triton Inference Server 2026-06-17 N/A 4.8 MEDIUM
NVIDIA Triton Inference Server contains a vulnerability in triton server where an attacker may cause an information disclosure by uploading a model configuration. A successful exploit of this vulnerability may lead to information disclosure or denial of service.
CVE-2026-24146 1 Nvidia 1 Triton Inference Server 2026-06-17 N/A 7.5 HIGH
NVIDIA Triton Inference Server contains a vulnerability where insufficient input validation and a large number of outputs could cause a server crash. A successful exploit of this vulnerability might lead to denial of service.
CVE-2025-33254 1 Nvidia 1 Triton Inference Server 2026-06-17 N/A 7.5 HIGH
NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause internal state corruption. A successful exploit of this vulnerability may lead to a denial of service.
CVE-2025-33253 1 Nvidia 1 Nemo 2026-06-17 N/A 7.8 HIGH
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.
CVE-2025-33252 1 Nvidia 1 Nemo 2026-06-17 N/A 7.8 HIGH
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.
CVE-2025-33251 1 Nvidia 1 Nemo 2026-06-17 N/A 7.8 HIGH
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.