CVE-2026-47617: NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery via DNS rebinding. A successful exploit of
NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery via DNS rebinding. A successful exploit of this vulnerability might lead to information disclosure.
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-47617
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-47617 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for NVIDIA Dynamo for
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- highCVE-2026-47623: NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause deserialization…nvd · 2026-08-04
- mediumCVE-2026-47622: NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation …nvd · 2026-08-04
- mediumCVE-2026-47621: NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race conditio…nvd · 2026-08-04
- mediumCVE-2026-47620: NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race conditio…nvd · 2026-08-04
- mediumCVE-2026-47619: NVIDIA Dynamo for Linux examples and recipes contain a vulnerability where an attacker could c…nvd · 2026-08-04
- highCVE-2026-47618: NVIDIA Dynamo for Linux contains a vulnerability in the Rust multimodal media fetcher where an…nvd · 2026-08-04
More from NVD Recent CVEs
- highCVE-2026-7529: The wiseCampaign – WooCommerce Conversions Made Easy plugin for WordPress is vulnerable to unau…2026-08-05
- mediumCVE-2026-7456: The Udimi Tools plugin for WordPress is vulnerable to unauthorized modification of data due to …2026-08-05
- highCVE-2026-67623: Mistral Vibe before 2.23.3 contains a remote code execution vulnerability that allows attacker…2026-08-05
- highCVE-2026-17506: The Independent Analytics plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi…2026-08-05
- highCVE-2026-16443: A flaw was found in the SAML metadata import functionality of the keycloak-services component,…2026-08-05