info: name: tensorrt-llm cve: CVE-2026-24234 summary: NVIDIA TensorRT-LLM SSRF vulnerability in multimodal media fetching functions details: 'NVIDIA TensorRT-LLM for Linux contains a vulnerability in the multimodal media fetching functions, where a network-accessible attacker could cause server-side request forgery (SSRF). The vulnerability (CWE-918) exists because the multimodal media fetching component does not properly validate URLs before making server-side requests. A successful exploit of this vulnerability might lead to denial of service and information disclosure. An attacker could leverage this flaw to access internal services, cloud metadata endpoints, or other resources reachable from the server that are not intended to be exposed. The vulnerability affects all versions of TensorRT-LLM from 0.0 through v1.3.0 rc14. NVIDIA has released v1.3.0 rc15 as the fix. No public exploits or PoCs have been reported as of the bulletin publication date (2026-07-14). CISA SSVC assessment: exploitation=none, automatable=no, technical impact=partial.' cvss: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L severity: MEDIUM security_advise: Upgrade NVIDIA TensorRT-LLM to v1.3.0 rc15 or later. Clone or update the software from the NVIDIA/TensorRT-LLM GitHub repository. Additionally, review and restrict network access to the multimodal media fetching functions, and limit outbound network connections from the TensorRT-LLM server to only required destinations. references: - https://nvd.nist.gov/vuln/detail/CVE-2026-24234 - https://github.com/NVIDIA/product-security/tree/main/2026/5840 rule: version <= "1.3.0-rc14" references: - https://nvd.nist.gov/vuln/detail/CVE-2026-24234 - https://github.com/NVIDIA/product-security/tree/main/2026/5840