CVE-2026-24229: NVIDIA Tensorrt-Llm
High severity, CVSS 7.3. EPSS: 0.2% chance of exploitation in the next 30 days.
NVIDIA TensorRT-LLM for Linux contains a vulnerability in the disaggregated orchestrator component, where an attacker could read, write, or delete internal cluster state by sending requests to the FastAPI server. A successful exploit of this vulnerability might lead to information disclosure, data tampering, and denial of service.
Affected products
- NVIDIA Tensorrt-Llm: from 0.0, up to and including v1.3.0 rc16
Published 2026-07-14. Last modified 2026-07-15.