CVE-2026-24158
published 2026-03-24CVE-2026-24158: NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of service by providing a large compressed…
PriorityP338high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.40%
32.6th percentile
NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of service by providing a large compressed payload. A successful exploit of this vulnerability may lead to denial of service.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| nvidia | triton_inference_server | < 26.01 | 26.01 |
| nvidia | triton_inference_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-24158 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2026-24158 [HIGH] CVE-2026-24158 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-24158 :
Triton Inference Server vulnerability analysis and mitigation
NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of service by providing a large compressed payload. A successful exploit of this vulnerability may lead to denial of service.
Source : NVD
## 7.5
Score
Published March 24, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Triton Inference Server
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 19.3
Exploitation Probability (EPSS) 0.1
Affected packages and libraries
cpe:2.3:a:nvidia:triton_inference_server
Sources
Linux Severity HIGH Has Fix Added at: Mar 26, 2026
Linux Severity HIGH
Wiz
CVE-2025-33254 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-33254 [HIGH] CVE-2025-33254 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-33254 :
Triton Inference Server vulnerability analysis and mitigation
NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause internal state corruption. A successful exploit of this vulnerability may lead to a denial of service.
Source : NVD
## 7.5
Score
Published March 24, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Triton Inference Server
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 13
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:nvidia:triton_inference_server
Sources
Linux Severity HIGH Has Fix Added at: Mar 26, 2026
Linux Severity HIGH Has Fix Added at: Apr 02, 2026
## Get a CVE risk asse
Wiz
CVE-2025-33238 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2025-33238 [HIGH] CVE-2025-33238 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-33238 :
Triton Inference Server vulnerability analysis and mitigation
NVIDIA Triton Inference Server Sagemaker HTTP server contains a vulnerability where an attacker may cause an exception. A successful exploit of this vulnerability may lead to denial of service.
Source : NVD
## 7.5
Score
Published March 24, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
Triton Inference Server
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 13
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:nvidia:triton_inference_server
Sources
Linux Severity HIGH Has Fix Added at: Mar 26, 2026
Linux Severity HIGH Has Fix Added at: Apr 02, 2026
## Get a CVE ri
2026-03-24
Published