📦 Nemo

by Nvidia

🔍 What is Nemo?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-33252

HIGH CVSS 7.8 Feb 18, 2026

CVE-2025-33252 is a deserialization vulnerability in NVIDIA's NeMo Framework that allows remote attackers to execute arbitrary code. This affects organizations using NVIDIA NeMo for AI/ML development ...

CVE-2025-33243

HIGH CVSS 7.8 Feb 18, 2026

The NVIDIA NeMo Framework vulnerability allows remote code execution in distributed environments, enabling attackers to execute arbitrary code, escalate privileges, disclose information, and tamper wi...

CVE-2025-33246

HIGH CVSS 7.8 Feb 18, 2026

CVE-2025-33246 is a command injection vulnerability in NVIDIA's NeMo Framework ASR Evaluator utility that allows attackers to execute arbitrary commands by supplying crafted input to a configuration p...

CVE-2025-33250

HIGH CVSS 7.8 Feb 18, 2026

CVE-2025-33250 is a remote code execution vulnerability in NVIDIA's NeMo Framework that allows attackers to execute arbitrary code on affected systems. This affects organizations using NVIDIA NeMo for...

CVE-2025-33236

HIGH CVSS 7.8 Feb 18, 2026

The NVIDIA NeMo Framework vulnerability allows attackers to inject malicious code through crafted data inputs. Successful exploitation could lead to remote code execution, privilege escalation, data t...

CVE-2025-33205

HIGH CVSS 7.3 Nov 25, 2025

The NVIDIA NeMo framework contains a vulnerability where attackers can exploit a predefined variable to include functionality from untrusted sources, potentially leading to remote code execution. This...

CVE-2025-33178

HIGH CVSS 7.8 Nov 11, 2025

The NVIDIA NeMo Framework contains a code injection vulnerability in its BERT services component that allows attackers to execute arbitrary code by sending malicious data. This affects all platforms r...

CVE-2025-23361

HIGH CVSS 7.8 Nov 11, 2025

The NVIDIA NeMo Framework contains a vulnerability where malicious input can cause improper control of code generation, potentially leading to remote code execution, privilege escalation, information ...

CVE-2025-23315

HIGH CVSS 7.8 Aug 26, 2025

CVE-2025-23315 is a code injection vulnerability in NVIDIA NeMo Framework's export and deploy component that allows attackers to execute arbitrary code by providing malicious data. Successful exploita...

CVE-2025-23313

HIGH CVSS 7.8 Aug 26, 2025

CVE-2025-23313 is a code injection vulnerability in NVIDIA's NeMo Framework NLP component that allows attackers to execute arbitrary code by providing malicious data. Successful exploitation could lea...

CVE-2025-23249

HIGH CVSS 7.6 Apr 22, 2025

The NVIDIA NeMo Framework vulnerability allows remote attackers to execute arbitrary code by exploiting insecure deserialization of untrusted data. This affects users running vulnerable versions of NV...

CVE-2025-23360

HIGH CVSS 7.1 Mar 11, 2025

CVE-2025-23360 is a relative path traversal vulnerability in NVIDIA Nemo Framework that allows authenticated users to write arbitrary files to unintended locations. Successful exploitation could lead ...

CVE-2024-0081

HIGH CVSS 8.6 Apr 5, 2024

This vulnerability in NVIDIA's NeMo framework allows attackers to cause unlimited resource allocation in the ASR web application component, leading to server-side denial of service. It affects Ubuntu ...