Skip to content
Noroxi

NVIDIA records

912 published records for vendor nvidia.

Researcher profile

Entered KEV
0 · 0%
Weaponized
1 · 0.1%
Pre-auth RCE
24
With a fix record
14.7%
Median publish → KEV
No record has entered KEV

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

912 records
  • CVE-2017-14491
    64This week

    Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via

    CriticalCVSS 9.8Proof of conceptEPSS 85%

    thekelleys · dnsmasqOct 3, 2017

  • NVIDIA Container Toolkit 1.16.1 or earlier contains a Time-of-check Time-of-Use (TOCTOU) vulnerability when used with default configuration

    HighCVSS 8.3Proof of conceptEPSS 41%

    nvidia · nvidia container toolkitSep 26, 2024

  • NVFLARE, versions prior to 2.1.4, contains a vulnerability that deserialization of Untrusted Data due to Pickle usage may allow an unprivile

    CriticalCVSS 9.8Proof of conceptEPSS 11%

    nvidia · nvflareAug 28, 2022

  • NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause

    CriticalCVSS 10.0No exploitEPSS 5%

    nvidia · gpu driverAug 6, 2019

  • NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitrary file.

    HighCVSS 8.8No exploitEPSS 20%

    nvidia · triton inference serverMay 14, 2024

  • NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause

    CriticalCVSS 9.8No exploitEPSS 5%

    nvidia · gpu driverAug 6, 2019

  • Unspecified vulnerability in NVIDIA graphics driver Release 331, 325, 319, 310, and 304 has unknown impact and attack vectors, a different v

    CriticalCVSS 10.0No exploitEPSS 2%

    nvidia · gpu driverJan 21, 2014

  • The host memory mapping path feature in the NVIDIA GPU graphics driver R346 before 346.87 and R352 before 352.41 for Linux and R352 before 3

    CriticalCVSS 10.0No exploitEPSS 2%

    nvidia · gpu driverNov 24, 2015

  • Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior mem

    MediumCVSS 5.5Proof of conceptEPSS 61%

    intel · atom cMay 22, 2018

  • NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contain a vulnerability in the AMI BMC firmware in which software

    CriticalCVSS 9.8No exploitEPSS 3%

    nvidia · dgx-1Oct 29, 2020

  • NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a stack overflow through specially crafted HTTP reques

    CriticalCVSS 9.8No exploitEPSS 3%

    nvidia · triton inference serverAug 6, 2025

  • NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass.

    CriticalCVSS 9.8Proof of conceptEPSS 3%

    nvidia · triton inference serverMay 20, 2026

  • NVIDIA Infrastructure Controller for Linux contains a vulnerability where an attacker could cause OS command injection.

    CriticalCVSS 9.8No exploitEPSS 2%

    nvidia · infra controllerSep 22, 2026

  • NVFLARE, versions prior to 2.1.2, contains a vulnerability in its PKI implementation module, where The CA credentials are transported via pi

    CriticalCVSS 9.8No exploitEPSS 2%

    nvidia · nvflareJul 1, 2022

  • NVFLARE, versions prior to 2.1.2, contains a vulnerability in its utils module, where YAML files are loaded via yaml.load() instead of yaml.

    CriticalCVSS 9.8No exploitEPSS 2%

    nvidia · nvflareJul 1, 2022

  • NVIDIA Triton Inference Server contains a vulnerability in the HTTP server, where an attacker could start a reverse shell by sending a speci

    CriticalCVSS 9.8No exploitEPSS 2%

    nvidia · triton inference serverAug 6, 2025

  • NVIDIA Riva contains a vulnerability where a user could cause an improper access control issue.

    CriticalCVSS 9.8No exploitEPSS 2%

    nvidia · rivaMar 11, 2025

  • NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause stack buffer overflow by special

    CriticalCVSS 9.8No exploitEPSS 2%

    nvidia · triton inference serverAug 6, 2025

  • Clara Genomics Analysis before 0.2.0 has an integer overflow for cudapoa memory management in allocate_block.cpp.

    CriticalCVSS 9.8No exploitEPSS 2%

    nvidia · clara genomics analysisAug 29, 2019

  • NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of

    CriticalCVSS 9.8No exploitEPSS 2%

    nvidia · triton inference serverAug 6, 2025

  • NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30 and all DGX-2 with BMC firmware versions prior to 1.06.06, contain

    CriticalCVSS 9.8No exploitEPSS 1%

    nvidia · dgx-1Oct 29, 2020

  • NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user on the

    CriticalCVSS 9.9No exploitEPSS 1%

    nvidia · virtual gpuMay 17, 2022

  • NVIDIA NeMo library for all platforms contains a vulnerability in the model loading component, where an attacker could cause code injection

    CriticalCVSS 9.8No exploitEPSS 1%

    nvidia · nemoAug 13, 2025

  • NVIDIA TensorRT for contains a vulnerability where a user might cause a deserialization of untrusted data.

    CriticalCVSS 9.8No exploitEPSS 1%

    nvidia · tensorrtJul 14, 2026

  • NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helper workflow, where an attacker could cause weak authentication.

    CriticalCVSS 9.8No exploitEPSS 1%

    nvidia · nemoclawAug 25, 2026