Nvidia Megatron Lm vulnerabilities

7 known vulnerabilities affecting nvidia/megatron_lm.

Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH7

Vulnerabilities

Page 1 of 1
CVE-2026-24151HIGHCVSS 7.8vAll versions prior to 0.15.32026-03-24
CVE-2026-24151 [HIGH] CWE-502 CVE-2026-24151: NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may cause an RCE by con NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may cause an RCE by convincing a user to load a maliciously crafted input. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
cvelistv5nvd
CVE-2025-33248HIGHCVSS 7.8vAll versions prior to 0.15.32026-03-24
CVE-2025-33248 [HIGH] CWE-502 CVE-2025-33248: NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script where an Attacker may ca NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
cvelistv5nvd
CVE-2025-33247HIGHCVSS 7.8vAll versions prior to 0.15.32026-03-24
CVE-2025-33247 [HIGH] CWE-502 CVE-2025-33247: NVIDIA Megatron LM contains a vulnerability in quantization configuration loading, which could allow NVIDIA Megatron LM contains a vulnerability in quantization configuration loading, which could allow remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
cvelistv5nvd
CVE-2026-24150HIGHCVSS 7.8vAll versions prior to 0.15.32026-03-24
CVE-2026-24150 [HIGH] CWE-502 CVE-2026-24150: NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
cvelistv5nvd
CVE-2026-24152HIGHCVSS 7.8vAll versions prior to 0.15.32026-03-24
CVE-2026-24152 [HIGH] CWE-502 CVE-2026-24152: NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
cvelistv5nvd
CVE-2025-23265HIGHCVSS 7.8vAll versions prior to 0.12.02025-06-24
CVE-2025-23265 [HIGH] CWE-94 CVE-2025-23265: NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacke NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacker may cause a code injection issue by providing a malicious file. A successful exploit of this vulnerability may lead to Code Execution, Escalation of Privileges, Information Disclosure and Data Tampering.
cvelistv5nvd
CVE-2025-23264HIGHCVSS 7.8vAll versions prior to 0.12.02025-06-24
CVE-2025-23264 [HIGH] CWE-94 CVE-2025-23264: NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacke NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacker may cause a code injection issue by providing a malicious file. A successful exploit of this vulnerability may lead to Code Execution, Escalation of Privileges, Information Disclosure and Data Tampering.
cvelistv5nvd