nvidia triton-inference-server CVE-2026-16497 is a vulnerability in NVIDIA Triton Inference Server
Published on September 8, 2026

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause excessive iteration. A successful exploit of this vulnerability might lead to denial of service.

NVD

Vulnerability Analysis

CVE-2026-16497 can be exploited with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality and integrity, and a high impact on availability.

Attack Vector:
NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
NONE
Integrity Impact:
NONE
Availability Impact:
HIGH

Weakness Type

Excessive Iteration

The software performs an iteration or loop without sufficiently limiting the number of times that the loop is executed. If the iteration can be influenced by an attacker, this weakness could allow attackers to consume excessive resources such as CPU or memory. In many cases, a loop does not need to be infinite in order to cause enough resource consumption to adversely affect the software or its host system; it depends on the amount of resources consumed per iteration.


Products Associated with CVE-2026-16497

Want to know whenever a new CVE is published for NVIDIA Triton Inference Server? stack.watch will email you.

 

Affected Versions

NVIDIA Triton Inference Server Version 0.0-26.06 is affected by CVE-2026-16497