Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-hvjw-vp7g-39h5 | NVIDIA NeMo Framework Deserializes Untrusted Data |
Fri, 20 Feb 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nvidia nemo
|
|
| CPEs | cpe:2.3:a:nvidia:nemo:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Nvidia nemo
|
Thu, 19 Feb 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nvidia
Nvidia nemo Framework |
|
| Vendors & Products |
Nvidia
Nvidia nemo Framework |
Wed, 18 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 18 Feb 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering. | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: nvidia
Published:
Updated: 2026-02-26T14:44:16.756Z
Reserved: 2025-04-15T18:51:08.848Z
Link: CVE-2025-33253
Updated: 2026-02-18T14:45:05.933Z
Status : Analyzed
Published: 2026-02-18T14:16:04.147
Modified: 2026-02-20T19:40:34.107
Link: CVE-2025-33253
No data.
OpenCVE Enrichment
Updated: 2026-02-19T10:19:55Z
Github GHSA