NVIDIA Triton Inference Server
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in NVIDIA Triton Inference Server.
Recent NVIDIA Triton Inference Server Security Advisories
| Advisory | Title | Published |
|---|---|---|
| 5853 | Security Bulletin: NVIDIA Triton Inference Server - July 2026 | July 14, 2026 |
| 5848 | Security Bulletin: NVIDIA Triton Inference Server - June 2026 | June 30, 2026 |
| 5828 | Security Bulletin: NVIDIA Triton Inference Server - May 2026 | May 19, 2026 |
| 5816 | Security Bulletin: NVIDIA Triton Inference Server - April 2026 | April 7, 2026 |
| 5790 | Security Bulletin: NVIDIA Triton Inference Server - March 2026 | March 24, 2026 |
| 5734 | Security Bulletin: NVIDIA Triton Inference Server 25.10 - December 2025 | December 2, 2025 |
| 5723 | Security Bulletin: NVIDIA Triton Inference Server - November 2025 | November 11, 2025 |
| 5691 | Security Bulletin: NVIDIA Triton Inference Server - September 2025 | September 16, 2025 |
| 5687 | Security Bulletin: NVIDIA Triton Inference Server - August 2025 | August 4, 2025 |
| 5612 | Security Bulletin: NVIDIA Triton Inference Server - February 2025 | February 11, 2025 |
By the Year
In 2026 there have been 25 vulnerabilities in NVIDIA Triton Inference Server with an average score of 7.3 out of ten. Last year, in 2025 Triton Inference Server had 26 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Triton Inference Server in 2026 could surpass last years number. Last year, the average CVE base score was greater by 0.73
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 25 | 7.25 |
| 2025 | 26 | 7.98 |
| 2024 | 6 | 0.00 |
It may take a day or so for new Triton Inference Server vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent NVIDIA Triton Inference Server Security Vulnerabilities
Memory Leak in NVIDIA Triton Inference Server Causes DoS
CVE-2026-47482
7.5 - High
- July 14, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause missing release of memory after effective lifetime. A successful exploit of this vulnerability might lead to denial of service.
Memory Leak
NVIDIA Triton Inference Server Auth Bypass via Alternate Channel
CVE-2026-47481
6.5 - Medium
- July 14, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an authentication bypass through an alternative path or channel. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
Authentication Bypass Using an Alternate Path or Channel
DDoS via Uncaught Exception in NVIDIA Triton Inference Server
CVE-2026-47480
7.5 - High
- July 14, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an uncaught exception. A successful exploit of this vulnerability might lead to denial of service.
Uncaught Exception
DoS via Resource Exhaustion in NVIDIA Triton Inference Server (Linux)
CVE-2026-47479
7.5 - High
- July 14, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service.
Resource Exhaustion
NVIDIA Triton Server DoS via expired FD abuse
CVE-2026-47478
7.5 - High
- July 14, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause the use of an expired file descriptor. A successful exploit of this vulnerability might lead to denial of service.
Stale file descriptor
NVIDIA Triton Inference Server Stack Buffer Overflow CVE-2026-47477
CVE-2026-47477
7.5 - High
- July 14, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a stack-based buffer overflow. A successful exploit of this vulnerability might lead to denial of service.
Stack Overflow
NVIDIA Triton Inference Server Uncontrolled Resource DoS
CVE-2026-47476
7.5 - High
- July 14, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service.
Resource Exhaustion
UAF in NVIDIA Triton Inference Server (Linux)
CVE-2026-24266
5.9 - Medium
- July 01, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a use-after-free issue. A successful exploit of this vulnerability might lead to denial of service.
Dangling pointer
NVIDIA Triton Inference Server DoS via High Compression Exploit
CVE-2026-24264
7.5 - High
- July 01, 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause improper handling of highly compressed data. A successful exploit of this vulnerability might lead to denial of service.
Data Amplification
NVIDIA Triton Inference Server DALI Uncontrolled Resource DoS
CVE-2026-24215
5.7 - Medium
- May 20, 2026
NVIDIA Triton Inference Server contains a vulnerability in the DALI backend, where an attacker could cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service.
Resource Exhaustion
NVIDIA Triton Inference Server Integer Overflow in DALI Backend
CVE-2026-24214
8 - High
- May 20, 2026
NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an integer overflow. A successful exploit of this vulnerability might lead to code execution, data tampering, or denial of service.
Integer Overflow or Wraparound
NVIDIA Triton IFS DALI Backend OOB Read Vulnerability
CVE-2026-24213
8 - High
- May 20, 2026
NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, data tampering, denial of service, or information disclosure.
Out-of-bounds Read
CVE-2026-24210: NVIDIA Triton Inference Server Integer Overflow Leading to DoS
CVE-2026-24210
7.5 - High
- May 20, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an integer overflow. A successful exploit of this vulnerability might lead to denial of service.
Integer Overflow or Wraparound
Path Traversal DOS in NVIDIA Triton Inference Server
CVE-2026-24209
7.5 - High
- May 20, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path traversal issue. A successful exploit of this vulnerability might lead to denial of service.
Directory traversal
NVIDIA Triton Server Path Traversal (DoS)
CVE-2026-24208
5.3 - Medium
- May 20, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path traversal issue. A successful exploit of this vulnerability might lead to denial of service.
Directory traversal
Auth Bypass in NVIDIA Triton Inference Server
CVE-2026-24207
9.8 - Critical
- May 20, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure.
Authentication Bypass Using an Alternate Path or Channel
NVIDIA Triton Inference Server Auth Bypass Vulnerability
CVE-2026-24206
7.3 - High
- May 20, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of this vulnerability might lead to escalation of privileges, denial of service, or information disclosure.
Authentication Bypass Using an Alternate Path or Channel
NVIDIA Triton Inference Server Crash via Malformed Header (DoS)
CVE-2026-24175
7.5 - High
- April 07, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request header to the server. A successful exploit of this vulnerability might lead to denial of service.
Uncaught Exception
NVIDIA Triton: Malformed Request Crash Leads to DoS
CVE-2026-24174
7.5 - High
- April 07, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service.
Incorrect Conversion between Numeric Types
Denial-of-Service via Malformed Request in NVIDIA Triton Inference Server
CVE-2026-24173
7.5 - High
- April 07, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service.
Integer Overflow or Wraparound
NVIDIA Triton Inference Server: Information Disclosure via Model Config Upload
CVE-2026-24147
4.8 - Medium
- April 07, 2026
NVIDIA Triton Inference Server contains a vulnerability in triton server where an attacker may cause an information disclosure by uploading a model configuration. A successful exploit of this vulnerability may lead to information disclosure or denial of service.
Directory traversal
Triton Inference Server: Insufficient Input Validation Leads to DoS
CVE-2026-24146
7.5 - High
- April 07, 2026
NVIDIA Triton Inference Server contains a vulnerability where insufficient input validation and a large number of outputs could cause a server crash. A successful exploit of this vulnerability might lead to denial of service.
Stack Exhaustion
NVIDIA Triton Inference Server HTTP Endpoint DoS via Large Compressed Payload
CVE-2026-24158
7.5 - High
- March 24, 2026
NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of service by providing a large compressed payload. A successful exploit of this vulnerability may lead to denial of service.
Stack Exhaustion
NVIDIA Triton Server Internal State Corruption DoS
CVE-2025-33254
7.5 - High
- March 24, 2026
NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause internal state corruption. A successful exploit of this vulnerability may lead to a denial of service.
Race Condition
NVIDIA Triton Inference Server DoS via HTTP Exception (CVE-2025-33238)
CVE-2025-33238
7.5 - High
- March 24, 2026
NVIDIA Triton Inference Server Sagemaker HTTP server contains a vulnerability where an attacker may cause an exception. A successful exploit of this vulnerability may lead to denial of service.
Race Condition
Improper Quantity Validation in NVIDIA Triton Server Causing DoS
CVE-2025-33211
7.5 - High
- December 03, 2025
NVIDIA Triton Server for Linux contains a vulnerability where an attacker may cause an improper validation of specified quantity in input. A successful exploit of this vulnerability may lead to denial of service.
Improper Validation of Specified Quantity in Input
NVIDIA Triton Inference Server DoS via Improper Large Payload Check
CVE-2025-33201
7.5 - High
- December 03, 2025
NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause an improper check for unusual or exceptional conditions issue by sending extra large payloads. A successful exploit of this vulnerability may lead to denial of service.
Improper Check for Unusual or Exceptional Conditions
Stack Overflow via Large Payloads in NVIDIA Triton Inference Server
CVE-2025-33202
6.5 - Medium
- November 11, 2025
NVIDIA Triton Inference Server for Linux and Windows contains a vulnerability where an attacker could cause a stack overflow by sending extra-large payloads. A successful exploit of this vulnerability might lead to denial of service.
Stack Overflow
NVIDIA Triton Inference Server DALI Backend Improper Input Validation RCE
CVE-2025-23268
8 - High
- September 17, 2025
NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker may cause an improper input validation issue. A successful exploit of this vulnerability may lead to code execution.
Improper Input Validation
NVIDIA Triton Inference Server DoS via Misconfigured Model
CVE-2025-23336
4.4 - Medium
- September 17, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause a denial of service by loading a misconfigured model. A successful exploit of this vulnerability might lead to denial of service.
Improper Input Validation
NVIDIA Triton Inference Server: ShMem Python Bknd Corruption -> DoS
CVE-2025-23329
7.5 - High
- September 17, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause memory corruption by identifying and accessing the shared memory region used by the Python backend. A successful exploit of this vulnerability might lead to denial of service.
Authorization
NVIDIA Triton Inference Server OOB Write DoS via Crafted Input
CVE-2025-23328
7.5 - High
- September 17, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an out-of-bounds write through a specially crafted input. A successful exploit of this vulnerability might lead to denial of service.
Memory Corruption
Remote Code Execution via Model Name in NVIDIA Triton Inference Server (Python backend)
CVE-2025-23316
9.8 - Critical
- September 17, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause a remote code execution by manipulating the model name parameter in the model control APIs. A successful exploit of this vulnerability might lead to remote code execution, denial of service, information disclosure, and data tampering.
Shell injection
NVIDIA Triton Inference Server Python Backend OOB Read Info Disclosure
CVE-2025-23334
7.5 - High
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds read by sending a request. A successful exploit of this vulnerability might lead to information disclosure.
Out-of-bounds Read
NVIDIA Triton Python Backend OOB Write
CVE-2025-23319
9.8 - Critical
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds write by sending a request. A successful exploit of this vulnerability might lead to remote code execution, denial of service, data tampering, or information disclosure.
Memory Corruption
NVIDIA Triton Underflow Causes DoS via Model Config & Input
CVE-2025-23335
7.5 - High
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux and the Tensor RT backend contain a vulnerability where an attacker could cause an underflow by a specific model configuration and a specific input. A successful exploit of this vulnerability might lead to denial of service.
Integer underflow
NVIDIA Triton OOB Read via Python Backend
CVE-2025-23333
7.5 - High
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds read by manipulating shared memory data. A successful exploit of this vulnerability might lead to information disclosure.
Out-of-bounds Read
CVE-2025-23331: Triton Inference Server DoS via Excessive Memory Allocation
CVE-2025-23331
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a memory allocation with excessive size value, leading to a segmentation fault, by providing an invalid request. A successful exploit of this vulnerability might lead to denial of service.
Stack Exhaustion
NVIDIA Triton Inference Server Integer Overflow (DoS & Data Tampering)
CVE-2025-23327
9.1 - Critical
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an integer overflow through specially crafted inputs. A successful exploit of this vulnerability might lead to denial of service and data tampering.
Integer Overflow or Wraparound
NVIDIA Triton Inference Server Integer Overflow DOS
CVE-2025-23326
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause an integer overflow through a specially crafted input. A successful exploit of this vulnerability might lead to denial of service.
Integer Overflow to Buffer Overflow
Uncontrolled Recursion in NVIDIA Triton Inference Server causes DoS
CVE-2025-23325
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause uncontrolled recursion through a specially crafted input. A successful exploit of this vulnerability might lead to denial of service.
Stack Exhaustion
Triton Inference Server Integer Overflow DoS
CVE-2025-23324
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause an integer overflow or wraparound, leading to a segmentation fault, by providing an invalid request. A successful exploit of this vulnerability might lead to denial of service.
Integer Overflow or Wraparound
NVIDIA Triton Inference Server DoS via Integer Overflow
CVE-2025-23323
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause an integer overflow or wraparound, leading to a segmentation fault, by providing an invalid request. A successful exploit of this vulnerability might lead to denial of service.
Integer Overflow or Wraparound
NVIDIA Triton Inference Server Double Free DoS via Cancelled Stream
CVE-2025-23322
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where multiple requests could cause a double free when a stream is cancelled before it is processed. A successful exploit of this vulnerability might lead to denial of service.
Double-free
NVIDIA Triton Inference Server DIV0 DoS via Invalid Request
CVE-2025-23321
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where a user could cause a divide by zero issue by issuing an invalid request. A successful exploit of this vulnerability might lead to denial of service.
Divide By Zero
NVIDIA Triton Server Python Backend Shared Memory Overflow Info Disclosure
CVE-2025-23320
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause the shared memory limit to be exceeded by sending a very large request. A successful exploit of this vulnerability might lead to information disclosure.
Generation of Error Message Containing Sensitive Information
Triton Inference Server OOB Write in Python Backend (RCE)
CVE-2025-23318
9.8 - Critical
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability in the Python backend, where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, data tampering, and information disclosure.
Memory Corruption
NVIDIA Triton Inference Server: Malicious HTTP Reverse Shell
CVE-2025-23317
9.8 - Critical
- August 06, 2025
NVIDIA Triton Inference Server contains a vulnerability in the HTTP server, where an attacker could start a reverse shell by sending a specially crafted HTTP request. A successful exploit of this vulnerability might lead to remote code execution, denial of service, data tampering, or information disclosure.
Heap-based Buffer Overflow
NVIDIA Triton Inference Server RCE via HTTP Stack Overflow
CVE-2025-23311
- August 06, 2025
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a stack overflow through specially crafted HTTP requests. A successful exploit of this vulnerability might lead to remote code execution, denial of service, information disclosure, or data tampering.
Stack Overflow
RCE via Stack Buffer Overflow in NVIDIA Triton Inference Server
CVE-2025-23310
- August 06, 2025
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where an attacker could cause stack buffer overflow by specially crafted inputs. A successful exploit of this vulnerability might lead to remote code execution, denial of service, information disclosure, and data tampering.
Stack Overflow
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for NVIDIA Triton Inference Server or by NVIDIA? Click the Watch button to subscribe.