CVE-2025-23254: NVIDIA Tensorrt-Llm

High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.

NVIDIA TensorRT-LLM for any platform contains a vulnerability in python executor where an attacker may cause a data validation issue by local access to the TRTLLM server. A successful exploit of this vulnerability may lead to code execution, information disclosure and data tampering.

Affected products

  • NVIDIA Tensorrt-Llm: before 0.18.2 (fixed in 0.18.2)

Published 2025-05-01. Last modified 2026-06-17.