CVE-2026-24227
MEDIUMNvidia TensorRT < v1.3.0 rc14 - Deserialization of Untrusted Data
Title source: ruleDescription
NVIDIA TensorRT for contains a vulnerability where a user might cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution.
References (3)
Core 3
Scores
CVSS v3
5.3
EPSS
0.0070
EPSS Percentile
49.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-502
Status
published
Products (2)
nvidia/tensorrt
< 11.0
NVIDIA/TensorRT
v0 - v10.16.1 - v1.3.0 rc14
Published
Jul 14, 2026
Tracked Since
Jul 15, 2026