cbcvebase.

Nvidia Triton Inference Server vulnerabilities

58 known vulnerabilities affecting nvidia/triton_inference_server.

Total CVEs
58
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL12HIGH40MEDIUM6

Vulnerabilities

Page 2 of 3
CVE-2024-0095P3HIGHCVSS 7.2≥ 20.10, < 24.052024-06-13
CVE-2024-0095 [HIGH] CWE-117 CVE-2024-0095: NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where a user can injec NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where a user can inject forged logs and executable commands by injecting arbitrary data as a new log entry. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
nvd
CVE-2025-33201P3HIGHCVSS 7.5fixed in 25.10vAll versions prior to r25.102025-12-03
CVE-2025-33201 [HIGH] CWE-754 CVE-2025-33201: NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause an improper chec NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause an improper check for unusual or exceptional conditions issue by sending extra large payloads. A successful exploit of this vulnerability may lead to denial of service.
nvd
CVE-2026-24208P3HIGHCVSS 7.5fixed in 26.03fixed in r26.032026-05-20
CVE-2026-24208 [HIGH] CWE-22 CVE-2026-24208: NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path travers NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path traversal issue. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24209P3HIGHCVSS 7.5fixed in 26.03fixed in r26.032026-05-20
CVE-2026-24209 [HIGH] CWE-22 CVE-2026-24209: NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path travers NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path traversal issue. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-33211P3HIGHCVSS 7.5fixed in 25.10vAll versions prior to r25.102025-12-03
CVE-2025-33211 [HIGH] CWE-1284 CVE-2025-33211: NVIDIA Triton Server for Linux contains a vulnerability where an attacker may cause an improper vali NVIDIA Triton Server for Linux contains a vulnerability where an attacker may cause an improper validation of specified quantity in input. A successful exploit of this vulnerability may lead to denial of service.
nvd
CVE-2026-24174P3HIGHCVSS 7.5fixed in 26.02vAll versions prior to r26.022026-04-07
CVE-2026-24174 [HIGH] CWE-681 CVE-2026-24174: NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24173P3HIGHCVSS 7.5fixed in 26.02vAll versions prior to r26.022026-04-07
CVE-2026-24173 [HIGH] CWE-190 CVE-2026-24173: NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-47477P3HIGHCVSS 7.5≥ 0.0, ≤ 26.042026-07-14
CVE-2026-47477 [HIGH] CWE-121 CVE-2026-47477: NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a stac NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a stack-based buffer overflow. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24264P3HIGHCVSS 7.5≤ 26.03v0.0 - 26.032026-07-01
CVE-2026-24264 [HIGH] CWE-409 CVE-2026-24264: NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause improp NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause improper handling of highly compressed data. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23333P3HIGHCVSS 7.5fixed in 25.07vAll versions prior to 25.072025-08-06
CVE-2025-23333 [HIGH] CWE-125 CVE-2025-23333: NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds read by manipulating shared memory data. A successful exploit of this vulnerability might lead to information disclosure.
nvd
CVE-2026-24175P3HIGHCVSS 7.5fixed in 26.02vAll versions prior to r26.022026-04-07
CVE-2026-24175 [HIGH] CWE-248 CVE-2026-24175: NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request header to the server. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23328P3HIGHCVSS 7.5fixed in 25.08vAll versions prior to 25.082025-09-17
CVE-2025-23328 [HIGH] CWE-787 CVE-2025-23328: NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker coul NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an out-of-bounds write through a specially crafted input. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23329P3HIGHCVSS 7.5fixed in 25.08vAll versions prior to 25.082025-09-17
CVE-2025-23329 [HIGH] CWE-284 CVE-2025-23329: NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker coul NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause memory corruption by identifying and accessing the shared memory region used by the Python backend. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-33238P3HIGHCVSS 7.5fixed in 26.01vAll versions prior to 26.012026-03-24
CVE-2025-33238 [HIGH] CWE-362 CVE-2025-33238: NVIDIA Triton Inference Server Sagemaker HTTP server contains a vulnerability where an attacker may NVIDIA Triton Inference Server Sagemaker HTTP server contains a vulnerability where an attacker may cause an exception. A successful exploit of this vulnerability may lead to denial of service.
nvd
CVE-2025-23335P3HIGHCVSS 7.5fixed in 25.05vAll versions prior to 25.052025-08-06
CVE-2025-23335 [HIGH] CWE-191 CVE-2025-23335: NVIDIA Triton Inference Server for Windows and Linux and the Tensor RT backend contain a vulnerabili NVIDIA Triton Inference Server for Windows and Linux and the Tensor RT backend contain a vulnerability where an attacker could cause an underflow by a specific model configuration and a specific input. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24266P3HIGHCVSS 7.5≤ 26.03v0.0 - 26.032026-07-01
CVE-2026-24266 [HIGH] CWE-416 CVE-2026-24266: NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a use- NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a use-after-free issue. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-24215P3HIGHCVSS 7.5fixed in 26.03fixed in r26.032026-05-20
CVE-2026-24215 [HIGH] CWE-400 CVE-2026-24215: NVIDIA Triton Inference Server contains a vulnerability in the DALI backend, where an attacker could NVIDIA Triton Inference Server contains a vulnerability in the DALI backend, where an attacker could cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2026-47481P3MEDIUMCVSS 6.5≥ 0.0, ≤ 26.042026-07-14
CVE-2026-47481 [MEDIUM] CWE-288 CVE-2026-47481: NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an aut NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an authentication bypass through an alternative path or channel. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
nvd
CVE-2025-23331P3HIGHCVSS 7.5fixed in 25.06vAll versions prior to 25.062025-08-06
CVE-2025-23331 [HIGH] CWE-789 CVE-2025-23331: NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cau NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a memory allocation with excessive size value, leading to a segmentation fault, by providing an invalid request. A successful exploit of this vulnerability might lead to denial of service.
nvd
CVE-2025-23322P3HIGHCVSS 7.5fixed in 25.06vAll versions prior to 25.062025-08-06
CVE-2025-23322 [HIGH] CWE-415 CVE-2025-23322: NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where multiple request NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where multiple requests could cause a double free when a stream is cancelled before it is processed. A successful exploit of this vulnerability might lead to denial of service.
nvd
Nvidia Triton Inference Server vulnerabilities | cvebase