NVD や CVE、ほか複数の脅威フィードを束ね、RCE など高リスクな事象を深く追える一覧です。CVSS と EPSS を組み合わせ、Exploit 参照や PoC の有無から悪用しやすさを追跡します。ベンダー修正や緩和策の文脈とあわせて優先度を決め、対応サイクルを短く保ちつつ重要資産を守る支援をします。
Assigner(CNA/発行元):[email protected] この条件を外す
| CVE | 説明 | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|
| CVE-2026-47479 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service. | 7.5 | 0.28% | 2026-07-14 | 2026-07-15 |
| CVE-2026-47478 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause the use of an expired file descriptor. A successful exploit of this vulnerability might lead to denial of service. | 7.5 | 0.30% | 2026-07-14 | 2026-07-15 |
| CVE-2026-47477 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a stack-based buffer overflow. A successful exploit of this vulnerability might lead to denial of service. | 7.5 | 0.31% | 2026-07-14 | 2026-07-15 |
| CVE-2026-47476 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service. | 7.5 | 0.34% | 2026-07-14 | 2026-07-15 |
| CVE-2026-24270 | NVIDIA AIStore framework contains a vulnerability where an attacker could bypass authentication. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, and data tampering. | 9.8 | 0.84% | 2026-07-01 | 2026-07-01 |
| CVE-2026-24266 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a use-after-free issue. A successful exploit of this vulnerability might lead to denial of service. | 5.9 | 0.72% | 2026-07-01 | 2026-07-06 |
| CVE-2026-24264 | NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause improper handling of highly compressed data. A successful exploit of this vulnerability might lead to denial of service. | 7.5 | 0.77% | 2026-07-01 | 2026-07-06 |
| CVE-2026-24260 | NVIDIA Container Toolkit for Linux contains a vulnerability where an attacker could cause a time-of-check time-of-use race condition. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, and data tampering. | 8.5 | 0.49% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24251 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of dynamically managed code resources. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.15% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24250 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper validation of allowed inputs. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.15% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24249 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.15% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24248 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of code generation. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.17% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24247 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.16% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24246 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause improper control of dynamically managed code resources. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.16% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24245 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.15% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24244 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.15% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24243 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.17% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24242 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause server-side request forgery. A successful exploit of this vulnerability might lead to information disclosure. | 7.8 | 0.14% | 2026-07-01 | 2026-07-02 |
| CVE-2026-24240 | NVIDIA Megatron Bridge for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure. | 7.8 | 0.16% | 2026-07-01 | 2026-07-02 |
| CVE-2025-23351 | NVIDIA ConnectX and BlueField contain a vulnerability in the command interface where a local user with virtual function (VF) access may cause a write out of bounds by crafted input. A successful exploit of this vulnerability may lead to arbitrary code execution on the device. | 9.0 | 0.27% | 2026-07-01 | 2026-07-01 |