Security Advisory

CVE-2025-23304

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-08-13 17:16:12
Last updated 2026-02-26 17:48:38
Assigner nvidia
CVSS score 7.8
State PUBLISHED

Description

NVIDIA NeMo library for all platforms contains a vulnerability in the model loading component, where an attacker could cause code injection by loading .nemo files with maliciously crafted metadata. A successful exploit of this vulnerability may lead to remote code execution and data tampering.