CVE-2026-24226
Deferred Deferred - Pending Action

Improper Code Generation in NVIDIA TensorRT-LLM for Linux

Vulnerability report for CVE-2026-24226, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-14

Last updated on: 2026-07-15

Assigner: NVIDIA Corporation

Description

NVIDIA TensorRT-LLM for Linux contains a vulnerability where an attacker could cause improper control of code generation. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-14
Last Modified
2026-07-15
Generated
2026-08-04
AI Q&A
2026-07-15
EPSS Evaluated
2026-08-02
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
nvidia tensorrt-llm *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-829 The product imports, requires, or includes executable functionality (such as a library) from a source that is outside of the intended control sphere.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in NVIDIA TensorRT-LLM for Linux allows an attacker to improperly control code generation. Exploitation could result in code execution, data tampering, and information disclosure.

Detection Guidance

Detection methods are not specified in the provided CVE details. NVIDIA TensorRT-LLM vulnerabilities typically require checking installed versions against patched releases and monitoring for unusual code execution or tampering activities.

Impact Analysis

If exploited, this vulnerability could lead to unauthorized code execution on your system, allowing attackers to modify data or steal confidential information. It may also disrupt services relying on TensorRT-LLM.

Compliance Impact

This vulnerability could result in data breaches, violating GDPR and HIPAA requirements for data protection and confidentiality. Non-compliance may lead to legal penalties and reputational damage.

Mitigation Strategies

Update TensorRT-LLM to the latest patched version provided by NVIDIA. Monitor NVIDIA's security advisories for updates and apply patches promptly. Restrict access to systems running TensorRT-LLM to trusted users only.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-24226. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart