Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 10 Dec 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nvidia
Nvidia merlin Transformers4rec |
|
| Vendors & Products |
Nvidia
Nvidia merlin Transformers4rec |
Tue, 09 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Dec 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NVIDIA Merlin Transformers4Rec for Linux contains a vulnerability in the Trainer component, where a user could cause a deserialization issue. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering. | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: nvidia
Published:
Updated: 2025-12-09T20:42:19.666Z
Reserved: 2025-04-15T18:51:06.123Z
Link: CVE-2025-33213
Updated: 2025-12-09T20:18:50.396Z
Status : Deferred
Published: 2025-12-09T18:15:49.447
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-33213
No data.
OpenCVE Enrichment
Updated: 2025-12-10T17:49:01Z