Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.8

NVIDIA NeMo Framework allows attackers to run malicious code remotely

CVE-2025-33243
Summary

NVIDIA NeMo Framework has a critical weakness that lets hackers take control of a network. This could allow them to access sensitive data, disrupt operations, and even steal sensitive information. If you use NeMo Framework, update to the latest version to fix this issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
nvidia nemo <= 2.6.1 –
Original title
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution in distributed environments. A successful exploit of this vulnerability might lead to code executi...
Original description
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution in distributed environments. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
nvd CVSS3.1 7.8
Vulnerability type
CWE-502 Deserialization of Untrusted Data
Published: 18 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026