TensorRT-LLM: SSRF via plugin loading
CVSS 6.8CVE-2026-24234NVIDIA / GPU stackcurated
Impact
SSRF via plugin loading
Who can reach it
Tenant-supplied plugin reference
What to do
Bump TensorRT-LLM; add egress policy
References
Related entries
- TensorRT-LLM: Code exec via insecure deserialization on model loadCVE-2026-24220 · TensorRT-LLMMedium
- TensorRT-LLM: Missing authentication in configuration processingCVE-2026-24259 · TensorRT-LLMMedium
- TensorRT-LLM: Code exec via insecure deserializationCVE-2026-24142 · TensorRT-LLMMedium
- TensorRT-LLM: Unsafe external file loadingCVE-2026-24226 · TensorRT-LLMMedium
- TensorRT-LLM: DoS via large tensor allocationCVE-2026-24271 · TensorRT-LLMMedium
- TensorRT-LLM: DoS / memory corruption (insufficient tensor validation)CVE-2026-47470 · TensorRT-LLMMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.