Nvidia Nemo Framework vulnerabilities
26 known vulnerabilities affecting nvidia/nemo_framework.
Total CVEs
26
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH20
Vulnerabilities
Page 2 of 2
CVE-2025-23314HIGHCVSS 7.8vAll versions prior to 2.4.02025-08-26
CVE-2025-23314 [HIGH] CWE-94 CVE-2025-23314: NVIDIA NeMo Framework for all platforms contains a vulnerability in the NLP component, where malicio
NVIDIA NeMo Framework for all platforms contains a vulnerability in the NLP component, where malicious data created by an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
cvelistv5nvd
CVE-2025-23315HIGHCVSS 7.8vAll versions prior to 2.4.02025-08-26
CVE-2025-23315 [HIGH] CWE-94 CVE-2025-23315: NVIDIA NeMo Framework for all platforms contains a vulnerability in the export and deploy component,
NVIDIA NeMo Framework for all platforms contains a vulnerability in the export and deploy component, where malicious data created by an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
cvelistv5nvd
CVE-2025-23251CRITICALCVSS 9.8vAll versions prior to 25.022025-04-22
CVE-2025-23251 [HIGH] CWE-94 CVE-2025-23251: NVIDIA NeMo Framework contains a vulnerability where a user could cause an improper control of gener
NVIDIA NeMo Framework contains a vulnerability where a user could cause an improper control of generation of code by remote code execution. A successful exploit of this vulnerability might lead to code execution and data tampering.
cvelistv5nvd
CVE-2025-23249CRITICALCVSS 9.8vAll versions prior to 25.022025-04-22
CVE-2025-23249 [HIGH] CWE-502 CVE-2025-23249: NVIDIA NeMo Framework contains a vulnerability where a user could cause a deserialization of untrust
NVIDIA NeMo Framework contains a vulnerability where a user could cause a deserialization of untrusted data by remote code execution. A successful exploit of this vulnerability might lead to code execution and data tampering.
cvelistv5nvd
CVE-2025-23250CRITICALCVSS 9.8vAll versions prior to 25.022025-04-22
CVE-2025-23250 [HIGH] CWE-22 CVE-2025-23250: NVIDIA NeMo Framework contains a vulnerability where an attacker could cause an improper limitation
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause an improper limitation of a pathname to a restricted directory by an arbitrary file write. A successful exploit of this vulnerability might lead to code execution and data tampering.
cvelistv5nvd
CVE-2025-23360CRITICALCVSS 9.8vAll versions prior to 24.122025-03-11
CVE-2025-23360 [HIGH] CWE-23 CVE-2025-23360: NVIDIA Nemo Framework contains a vulnerability where a user could cause a relative path traversal is
NVIDIA Nemo Framework contains a vulnerability where a user could cause a relative path traversal issue by arbitrary file write. A successful exploit of this vulnerability may lead to code execution and data tampering.
cvelistv5nvd
← Previous2 / 2