Inference infrastructure
Servers, runtimes and accelerators that host models, such as inference servers, GPU drivers and serving frameworks.
- All items
- 222
- Last 90 days
- 80
- Change
- +100%vs 40 before
Items per month
| Month | Items |
|---|---|
| May 2025 | 9 |
| Jun 2025 | 0 |
| Jul 2025 | 1 |
| Aug 2025 | 19 |
| Sep 2025 | 5 |
| Oct 2025 | 2 |
| Nov 2025 | 4 |
| Dec 2025 | 3 |
| Jan 2026 | 7 |
| Feb 2026 | 3 |
| Mar 2026 | 5 |
| Apr 2026 | 14 |
| May 2026 | 18 |
| Jun 2026 | 12 |
| Jul 2026 | 20 |
| Aug 2026 | 18 |
| Sep 2026 | 36 |
| Oct 2026 | 12 |
222 items
CVE-2024-28224: Ollama DNS rebinding allows remote access to the full API
Apr 8, 2024MediumVulnerabilitySecurityCVE-2024-28224CVE-2024-28224 affects Ollama before 0.1.29. A DNS rebinding vulnerability can inadvertently allow remote access to the full API, letting an unauthorized user chat with a large language model, delete a model, or cause a denial of service through resource exhaustion. The weakness is classified as CWE-346 (Origin Validation Error).
Fix: Fixed in 0.1.29 or later, per the Ollama releases page cited in the references.
NVD/CVE DatabaseCVE-2023-31036: NVIDIA Triton Inference Server relative path traversal through model load API
Jan 12, 2024HighVulnerabilitySecurityCVE-2023-31036CVE-2023-31036 affects NVIDIA Triton Inference Server for Linux and Windows when it is launched with the non-default command line option --model-control explicit. An attacker can use the model load API to cause a relative path traversal, which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. The source lists CWE-22 and CWE-23 and notes that NVD has not yet provided a CVSS assessment.
NVD/CVE Database
Topic added 2026-10-09. An item belongs to this topic when its title matches one of the topic's patterns or its summary mentions the topic at least twice. Report a wrong match with the feedback button on the item.