Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
49853
Total
4028
Critical
14819
High
14575
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-47623 | HIGH | 8.2 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to … | Aug 04, 2026 |
| CVE-2026-47622 | MEDIUM | 5.3 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation of error messages that contain sensitive information. A successful exploit of … | Aug 04, 2026 |
| CVE-2026-47621 | MEDIUM | 6.5 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of … | Aug 04, 2026 |
| CVE-2026-47620 | MEDIUM | 6.5 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of … | Aug 04, 2026 |
| CVE-2026-47619 | MEDIUM | 6.6 | NVIDIA Dynamo for Linux examples and recipes contain a vulnerability where an attacker could cause a system failure. A successful exploit of this vulnerability might … | Aug 04, 2026 |
| CVE-2026-47618 | HIGH | 7.5 | NVIDIA Dynamo for Linux contains a vulnerability in the Rust multimodal media fetcher where an attacker could cause server-side request forgery. A successful exploit of … | Aug 04, 2026 |
| CVE-2026-47617 | HIGH | 7.5 | NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery via DNS rebinding. A successful … | Aug 04, 2026 |
| CVE-2026-47616 | HIGH | 7.5 | NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery. A successful exploit of this … | Aug 04, 2026 |
| CVE-2026-47615 | HIGH | 7.5 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery by supplying a crafted URL in a multimodal request. A … | Aug 04, 2026 |
| CVE-2026-47614 | HIGH | 7.5 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery. A successful exploit of this vulnerability might lead to information … | Aug 04, 2026 |
| CVE-2026-47613 | HIGH | 7.5 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause improper limitation of a pathname to a restricted directory by supplying a crafted … | Aug 04, 2026 |
| CVE-2026-47612 | HIGH | 7.5 | NVIDIA Dynamo for Linux contains a vulnerability in the image loading component where an attacker may cause improper limitation of a pathname to a restricted … | Aug 04, 2026 |
| CVE-2026-47487 | MEDIUM | 4.4 | NVIDIA Triton Inference Server for Linux contains a vulnerability where a user could cause files outside the model repository to be read, written to, or … | Aug 04, 2026 |
| CVE-2026-24255 | HIGH | 7.5 | NVIDIA Dynamo for Linux contains a vulnerability in the multimodal embedding cache, where an attacker could cause a hash collision by submitting images that share … | Aug 04, 2026 |
| CVE-2026-24254 | CRITICAL | 9.8 | NVIDIA Dynamo for Linux contains a vulnerability in the multimodal serving topology, where an attacker could cause an out-of-bounds write. A successful exploit of this … | Aug 04, 2026 |
| CVE-2026-24253 | HIGH | 8.2 | NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to denial … | Aug 04, 2026 |
| CVE-2026-18830 | HIGH | 8.1 | Insufficient input validation in Amazon Bedrock AgentCore harness might allow an authenticated remote user to execute configured tools bypassing model invocation and security controls via … | Aug 04, 2026 |
| CVE-2026-18790 | LOW | 3.3 | A weakness has been identified in Systerel S2OPC up to 1.7.3. This affects the function LockedStaMac_ProcessMsg_DeleteMonitoredItemsResponse of the file src/ClientServer/frontend/client_wrapper/internal/state_machine.c of the component DeleteMonitoredItemsRequest Handler. … | Aug 04, 2026 |
| CVE-2026-18788 | HIGH | 7.3 | A security flaw has been discovered in Trippo ResponsiveFilemanager up to 9.14.0. The impacted element is an unknown function of the file filemanager/dialog.php. The manipulation … | Aug 04, 2026 |
| CVE-2026-69263 | UNKNOWN | — | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the mitigation for CVE-2025-8943 blocked -y … | Aug 04, 2026 |
| CVE-2026-69262 | UNKNOWN | — | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, `DELETE /api/v1/chatflows/:id` authorized requests with checkAnyPermission('chatflows:delete,agentflows:delete'), … | Aug 04, 2026 |
| CVE-2026-69259 | UNKNOWN | — | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the SQLite Record Manager node in … | Aug 04, 2026 |
| CVE-2026-69258 | UNKNOWN | — | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the unauthenticated POST /api/v1/prediction/:id endpoint accepted … | Aug 04, 2026 |
| CVE-2026-69257 | UNKNOWN | — | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise's HTTP security module httpSecurity.ts did … | Aug 04, 2026 |
| CVE-2026-69256 | UNKNOWN | — | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent node allowed users to … | Aug 04, 2026 |