<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – NVIDIA Driver (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/nvidia.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/nvidia-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – NVIDIA Driver (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:33 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-24237 – NVIDIA NVTabular contains a vulnerability where an attacker could cause improper...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24237</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24237</guid>
    <pubDate>Tue, 02 Jun 2026 17:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24237</strong></p>
  <p>NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24237">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24221 – NVIDIA NVTabular contains a vulnerability where an attacker could cause improper...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24221</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24221</guid>
    <pubDate>Tue, 02 Jun 2026 17:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24221</strong></p>
  <p>NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, data tampering and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24221">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24200 – NVIDIA vGPU software contains a vulnerability in the virtual GPU manager, where ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24200</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24200</guid>
    <pubDate>Tue, 26 May 2026 18:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24200</strong></p>
  <p>NVIDIA vGPU software contains a vulnerability in the virtual GPU manager, where an attacker could cause a use-after-free for stack memory. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24200">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24196 – NVIDIA Display Driver for Linux contains a vulnerability where a user could caus...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24196</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24196</guid>
    <pubDate>Tue, 26 May 2026 18:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24196</strong></p>
  <p>NVIDIA Display Driver for Linux contains a vulnerability where a user could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to denial of service and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24196">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24195 – NVIDIA Display Driver for Linux contains a vulnerability in UVM, where a user co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24195</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24195</guid>
    <pubDate>Tue, 26 May 2026 18:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24195</strong></p>
  <p>NVIDIA Display Driver for Linux contains a vulnerability in UVM, where a user could cause improper input validation. A successful exploit of this vulnerability might lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24195">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24194 – NVIDIA Display Driver for Linux contains a vulnerability in a kernel mode layer ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24194</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24194</guid>
    <pubDate>Tue, 26 May 2026 18:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24194</strong></p>
  <p>NVIDIA Display Driver for Linux contains a vulnerability in a kernel mode layer handler, where a user could cause improper permission handling. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-281</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24194">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24193 – NVIDIA Display Driver for Windows and Linux contains a vulnerability where an at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24193</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24193</guid>
    <pubDate>Tue, 26 May 2026 18:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24193</strong></p>
  <p>NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24193">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24192 – NVIDIA Display Driver for Linux contains a vulnerability where an attacker could...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24192</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24192</guid>
    <pubDate>Tue, 26 May 2026 18:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24192</strong></p>
  <p>NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause an incorrect conversion between numeric types, leading to a heap buffer overflow. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-681</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24192">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24191 – NVIDIA Display Driver for Windows contains a vulnerability where an attacker cou...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24191</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24191</guid>
    <pubDate>Tue, 26 May 2026 18:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24191</strong></p>
  <p>NVIDIA Display Driver for Windows contains a vulnerability where an attacker could cause a time-of-check time-of-use issue. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-367</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24191">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24190 – NVIDIA Display Driver for Windows and Linux contains a vulnerability in the kern...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24190</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24190</guid>
    <pubDate>Tue, 26 May 2026 18:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24190</strong></p>
  <p>NVIDIA Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause improper access to GPU resources. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24190">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24187 – NVIDIA Display Driver for Linux contains a vulnerability where an attacker could...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24187</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24187</guid>
    <pubDate>Tue, 26 May 2026 18:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24187</strong></p>
  <p>NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause a use-after-free. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24187">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24212 – NVIDIA Isaac Launchable for Linux contains a vulnerability where sensitive infor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24212</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24212</guid>
    <pubDate>Tue, 26 May 2026 17:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24212</strong></p>
  <p>NVIDIA Isaac Launchable for Linux contains a vulnerability where sensitive information is transmitted in clear text. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-319</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24212">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24162 – NVIDIA Transformers4Rec for Linux contains a vulnerability where an attacker cou...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24162</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24162</guid>
    <pubDate>Tue, 26 May 2026 17:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24162</strong></p>
  <p>NVIDIA Transformers4Rec for Linux contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24162">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24218 – NVIDIA DGX OS contains a vulnerability in the factory provisioning process, wher...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24218</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24218</guid>
    <pubDate>Wed, 20 May 2026 20:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24218</strong></p>
  <p>NVIDIA DGX OS contains a vulnerability in the factory provisioning process, where  the cloning of a base image causes identical SSH host keys to be deployed across multiple systems. The sharing of cryptographic identifiers across all similarly provisioned systems enables host impersonation or attacker-in-the-middle attacks. A successful exploit of this vulnerability might lead to code execution,…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-321</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24218">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24217 – NVIDIA BioNeMo Core for Linux contains a vulnerability where a user could cause ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24217</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24217</guid>
    <pubDate>Wed, 20 May 2026 20:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24217</strong></p>
  <p>NVIDIA BioNeMo Core for Linux contains a vulnerability where a user could cause a path traversal by loading a malicious file. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-29</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24217">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24216 – NVIDIA BioNemo for Linux contains a vulnerability where a user could cause a des...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24216</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24216</guid>
    <pubDate>Wed, 20 May 2026 20:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24216</strong></p>
  <p>NVIDIA BioNemo for Linux contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24216">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24188 – NVIDIA TensorRT contains a vulnerability where an attacker could cause an out-of...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24188</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24188</guid>
    <pubDate>Wed, 20 May 2026 20:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24188</strong></p>
  <p>NVIDIA TensorRT contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to data tampering.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24188">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24214 – NVIDIA Triton Inference Server contains a vulnerability in the DALI backend wher...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24214</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24214</guid>
    <pubDate>Wed, 20 May 2026 04:16:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24214</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an integer overflow. A successful exploit of this vulnerability might lead to code execution, data tampering, or denial of service.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24214">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24213 – NVIDIA Triton Inference Server contains a vulnerability in the DALI backend wher...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24213</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24213</guid>
    <pubDate>Wed, 20 May 2026 04:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24213</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, data tampering, denial of service, or information disclosure.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24213">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24210 – NVIDIA Triton Inference Server contains a vulnerability where an attacker could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24210</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24210</guid>
    <pubDate>Wed, 20 May 2026 04:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24210</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an integer overflow. A successful exploit of this vulnerability might lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24210">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24209 – NVIDIA Triton Inference Server contains a vulnerability where an attacker could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24209</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24209</guid>
    <pubDate>Wed, 20 May 2026 04:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24209</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a path traversal issue. A successful exploit of this vulnerability might lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24209">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-24207 – NVIDIA Triton Inference Server contains a vulnerability where an attacker could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24207</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24207</guid>
    <pubDate>Wed, 20 May 2026 04:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-24207</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-288</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24207">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24206 – NVIDIA Triton Inference Server contains a vulnerability where an attacker could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24206</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24206</guid>
    <pubDate>Wed, 20 May 2026 04:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24206</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of this vulnerability might lead to escalation of privileges, denial of service, or information disclosure.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-288</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24206">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24163 – NVIDIA TRT-LLM for any platform contains a vulnerability in RPC testing, where a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24163</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24163</guid>
    <pubDate>Wed, 20 May 2026 04:16:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24163</strong></p>
  <p>NVIDIA TRT-LLM for any platform contains a vulnerability in RPC testing, where an attacker could  cause an unsafe deserialization. A successful exploit of this vulnerability might lead to code execution, denial of service, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24163">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33255 – NVIDIA TRT-LLM for any platform contains a vulnerability in MPI server, where an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33255</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33255</guid>
    <pubDate>Wed, 20 May 2026 04:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33255</strong></p>
  <p>NVIDIA TRT-LLM for any platform contains a vulnerability in MPI server, where an attacker could cause an unsafe deserialization. A successful exploit of this vulnerability might lead to code execution, denial of service, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33255">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-41512 – ai-scanner is an AI model safety scanner built on NVIDIA garak. From version 1.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41512</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41512</guid>
    <pubDate>Fri, 08 May 2026 14:16:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-41512</strong></p>
  <p>ai-scanner is an AI model safety scanner built on NVIDIA garak. From version 1.0.0 to before version 1.4.1, there is a remote code execution vulnerability via JavaScript injection in `BrowserAutomation::PlaywrightService`. This issue has been patched in version 1.4.1.</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41512">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24222 – NVIDIA NeMoClaw contains a vulnerability in the sandbox environment initializati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24222</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24222</guid>
    <pubDate>Tue, 28 Apr 2026 19:36:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24222</strong></p>
  <p>NVIDIA NeMoClaw contains a vulnerability in the sandbox environment initialization component, where a remote attacker could cause improper access control by sending prompt-injected content that causes the agent to read and exfiltrate host environment variables not properly restricted during sandbox creation. A successful exploit of this vulnerability might lead to information disclosure.</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-497</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24222">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24186 – NVIDIA FLARE SDK  contains a vulnerability in FOBS, where an attacker may cause ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24186</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24186</guid>
    <pubDate>Tue, 28 Apr 2026 19:36:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24186</strong></p>
  <p>NVIDIA FLARE SDK  contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sending a malicious FOBS- encoded message. A successful exploit of this vulnerability might lead to code execution.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24186">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-24178 – NVIDIA NVFlare Dashboard contains a vulnerability in the user management and aut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24178</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24178</guid>
    <pubDate>Tue, 28 Apr 2026 19:36:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-24178</strong></p>
  <p>NVIDIA NVFlare Dashboard contains a vulnerability in the user management and authentication system where an unauthenticated attacker may cause authorization bypass through user-controlled key. A successful exploit of this vulnerability may lead to privilege escalation, data tampering, information disclosure, code execution, and denial of service.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24178">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24189 – NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24189</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24189</guid>
    <pubDate>Tue, 21 Apr 2026 17:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24189</strong></p>
  <p>NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated attacker could cause an out-of-bounds read by sending a maliciously crafted request. A successful exploit of this vulnerability might lead to denial of service and information disclosure.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24189">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24177 – NVIDIA KAI Scheduler contains a vulnerability where an attacker could access API...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24177</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24177</guid>
    <pubDate>Tue, 21 Apr 2026 17:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24177</strong></p>
  <p>NVIDIA KAI Scheduler contains a vulnerability where an attacker could access API endpoints without authorization. A successful exploit of this vulnerability might lead to information disclosure.</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24177">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24175 – NVIDIA Triton Inference Server contains a vulnerability where an attacker could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24175</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24175</guid>
    <pubDate>Tue, 07 Apr 2026 18:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24175</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request header to the server. A successful exploit of this vulnerability might lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-248</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24175">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24174 – NVIDIA Triton Inference Server contains a vulnerability where an attacker could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24174</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24174</guid>
    <pubDate>Tue, 07 Apr 2026 18:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24174</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-681</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24174">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24173 – NVIDIA Triton Inference Server contains a vulnerability where an attacker could ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24173</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24173</guid>
    <pubDate>Tue, 07 Apr 2026 18:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24173</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server. A successful exploit of this vulnerability might lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24173">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24156 – NVIDIA DALI contains a vulnerability where an attacker could cause a deserializa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24156</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24156</guid>
    <pubDate>Tue, 07 Apr 2026 18:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24156</strong></p>
  <p>NVIDIA DALI contains a vulnerability where an attacker could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to arbitrary code execution.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24156">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24146 – NVIDIA Triton Inference Server contains a vulnerability where insufficient input...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24146</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24146</guid>
    <pubDate>Tue, 07 Apr 2026 18:16:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24146</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where insufficient input validation and a large number of outputs could cause a server crash. A successful exploit of this vulnerability might lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-789</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24146">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24165 – NVIDIA BioNeMo contains a vulnerability where a user could cause a deserializati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24165</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24165</guid>
    <pubDate>Tue, 31 Mar 2026 17:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24165</strong></p>
  <p>NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24165">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24164 – NVIDIA BioNeMo contains a vulnerability where a user could cause a deserializati...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24164</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24164</guid>
    <pubDate>Tue, 31 Mar 2026 17:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24164</strong></p>
  <p>NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24164">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24154 – NVIDIA Jetson Linux has vulnerability in initrd, where an unprivileged attacker ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24154</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24154</guid>
    <pubDate>Tue, 31 Mar 2026 17:16:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24154</strong></p>
  <p>NVIDIA Jetson Linux has vulnerability in initrd, where an unprivileged attacker with physical access coul inject incorrect command line arguments. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24154">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24148 – NVIDIA Jetson for JetPack contains a vulnerability in the system initialization ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24148</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24148</guid>
    <pubDate>Tue, 31 Mar 2026 17:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24148</strong></p>
  <p>NVIDIA Jetson for JetPack contains a vulnerability in the system initialization logic, where an unprivileged attacker could cause the initialization of a resource with an insecure default. A successful exploit of this vulnerability might lead to information disclosure of encrypted data, data tampering, and partial denial of service across devices sharing the same machine ID.</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-1188</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24148">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24159 – NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remot...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24159</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24159</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24159</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24159">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24158 – NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint whe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24158</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24158</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24158</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability in the HTTP endpoint where an attacker may cause a denial of service by providing a large compressed payload. A successful exploit of this vulnerability may lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-789</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24158">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24157 – NVIDIA NeMo Framework contains a vulnerability in checkpoint loading where an at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24157</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24157</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24157</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability in checkpoint loading where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24157">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24152 – NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24152</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24152</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24152</strong></p>
  <p>NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24152">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24151 – NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24151</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24151</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24151</strong></p>
  <p>NVIDIA Megatron-LM contains a vulnerability in inferencing where an Attacker may cause an RCE by convincing a user to load a maliciously crafted input. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24151">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24150 – NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24150</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24150</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24150</strong></p>
  <p>NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24150">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24141 – NVIDIA Model Optimizer for Windows and Linux contains a vulnerability in the ONN...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24141</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24141</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24141</strong></p>
  <p>NVIDIA Model Optimizer for Windows and Linux contains a vulnerability in the ONNX quantization feature, where a user could cause unsafe deserialization by providing a specially crafted input file. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24141">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33254 – NVIDIA Triton Inference Server contains a vulnerability where an attacker may ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33254</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33254</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33254</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause internal state corruption. A successful exploit of this vulnerability may lead to a denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33254">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33248 – NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script wher...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33248</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33248</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33248</strong></p>
  <p>NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33248">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33247 – NVIDIA Megatron LM contains a vulnerability in quantization configuration loadin...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33247</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33247</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33247</strong></p>
  <p>NVIDIA Megatron LM contains a vulnerability in quantization configuration loading, which could allow remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33247">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-33244 – NVIDIA APEX for Linux contains a vulnerability where an unauthorized attacker co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33244</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33244</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-33244</strong></p>
  <p>NVIDIA APEX for Linux contains a vulnerability where an unauthorized attacker could cause a deserialization of untrusted data. This vulnerability affects environments that use PyTorch versions earlier than 2.6. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, data tampering, and information disclosure.</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33244">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33238 – NVIDIA Triton Inference Server Sagemaker HTTP server contains a vulnerability wh...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33238</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33238</guid>
    <pubDate>Tue, 24 Mar 2026 21:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33238</strong></p>
  <p>NVIDIA Triton Inference Server Sagemaker HTTP server contains a vulnerability where an attacker may cause an exception. A successful exploit of this vulnerability may lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33238">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-30824 – Flowise is a drag &amp; drop user interface to build a customized large language mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-30824</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-30824</guid>
    <pubDate>Sat, 07 Mar 2026 06:16:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-30824</strong></p>
  <p>Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.0.13, the NVIDIA NIM router (/api/v1/nvidia-nim/*) is whitelisted in the global authentication middleware, allowing unauthenticated access to privileged container management and token generation endpoints. This issue has been patched in version 3.0.13.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-30824">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33181 – NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE inter...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33181</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33181</guid>
    <pubDate>Tue, 24 Feb 2026 20:27:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33181</strong></p>
  <p>NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could inject a command. A successful exploit of this vulnerability might lead to escalation of privileges.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33181">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33180 – NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE inter...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33180</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33180</guid>
    <pubDate>Tue, 24 Feb 2026 20:27:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33180</strong></p>
  <p>NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could inject a command. A successful exploit of this vulnerability might lead to escalation of privileges.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33180">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33179 – NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE inter...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33179</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33179</guid>
    <pubDate>Tue, 24 Feb 2026 20:27:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33179</strong></p>
  <p>NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could run an unauthorized command. A successful exploit of this vulnerability might lead to escalation of privileges.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33179">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33253 – NVIDIA NeMo Framework contains a vulnerability where an attacker could cause rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33253</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33253</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33253</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33253">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33252 – NVIDIA NeMo Framework contains a vulnerability where an attacker could cause rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33252</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33252</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33252</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33252">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33251 – NVIDIA NeMo Framework contains a vulnerability where an attacker could cause rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33251</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33251</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33251</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33251">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33250 – NVIDIA NeMo Framework contains a vulnerability where an attacker could cause rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33250</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33250</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33250</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33250">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33249 – NVIDIA NeMo Framework for all platforms contains a vulnerability in a voice-prep...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33249</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33249</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33249</strong></p>
  <p>NVIDIA NeMo Framework for all platforms contains a vulnerability in a voice-preprocessing script, where malicious input created by an attacker could cause a code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33249">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33246 – NVIDIA NeMo Framework for all platforms contains a vulnerability in the ASR Eval...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33246</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33246</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33246</strong></p>
  <p>NVIDIA NeMo Framework for all platforms contains a vulnerability in the ASR Evaluator utility, where a user could cause a command injection by supplying crafted input to a configuration parameter. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, or information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33246">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33245 – NVIDIA NeMo Framework contains a vulnerability where malicious data could cause ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33245</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33245</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33245</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where malicious data could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33245">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33243 – NVIDIA NeMo Framework contains a vulnerability where an attacker could cause rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33243</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33243</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33243</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution in distributed environments. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33243">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33241 – NVIDIA NeMo Framework contains a vulnerability where an attacker could cause rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33241</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33241</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33241</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution by loading a maliciously crafted file. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33241">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33240 – NVIDIA Megatron Bridge contains a vulnerability in a data shuffling tutorial, wh...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33240</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33240</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33240</strong></p>
  <p>NVIDIA Megatron Bridge contains a vulnerability in a data shuffling tutorial, where malicious input could cause a code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33240">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33239 – NVIDIA Megatron Bridge contains a vulnerability in a data merging tutorial, wher...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33239</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33239</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33239</strong></p>
  <p>NVIDIA Megatron Bridge contains a vulnerability in a data merging tutorial, where malicious input could cause a code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33239">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33236 – NVIDIA NeMo Framework contains a vulnerability where malicious data created by a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33236</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33236</guid>
    <pubDate>Wed, 18 Feb 2026 14:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33236</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability where malicious data created by an attacker could cause code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33236">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-24149 – NVIDIA Megatron-LM for all platforms contains a vulnerability in a script, where...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24149</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24149</guid>
    <pubDate>Tue, 03 Feb 2026 20:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-24149</strong></p>
  <p>NVIDIA Megatron-LM for all platforms contains a vulnerability in a script, where malicious data created by an attacker may cause a code injection issue. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24149">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33220 – NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33220</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33220</guid>
    <pubDate>Wed, 28 Jan 2026 18:16:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33220</strong></p>
  <p>NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause heap memory access after the memory is freed. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33220">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33219 – NVIDIA Display Driver for Linux contains a vulnerability in the NVIDIA kernel mo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33219</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33219</guid>
    <pubDate>Wed, 28 Jan 2026 18:16:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33219</strong></p>
  <p>NVIDIA Display Driver for Linux contains a vulnerability in the NVIDIA kernel module where an attacker could cause an integer overflow or wraparound. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33219">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33218 – NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mod...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33218</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33218</guid>
    <pubDate>Wed, 28 Jan 2026 18:16:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33218</strong></p>
  <p>NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where an attacker could cause an integer overflow. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33218">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33217 – NVIDIA Display Driver for Windows contains a vulnerability where an attacker cou...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33217</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33217</guid>
    <pubDate>Wed, 28 Jan 2026 18:16:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33217</strong></p>
  <p>NVIDIA Display Driver for Windows contains a vulnerability where an attacker could trigger a use after free. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33217">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33234 – NVIDIA runx contains a vulnerability where an attacker could cause a code inject...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33234</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33234</guid>
    <pubDate>Tue, 27 Jan 2026 18:15:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33234</strong></p>
  <p>NVIDIA runx contains a vulnerability where an attacker could cause a code injection. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33234">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33233 – NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability where ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33233</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33233</guid>
    <pubDate>Tue, 20 Jan 2026 18:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33233</strong></p>
  <p>NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability where an attacker could cause code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33233">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33230 – NVIDIA Nsight Systems for Linux contains a vulnerability in the .run installer, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33230</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33230</guid>
    <pubDate>Tue, 20 Jan 2026 18:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33230</strong></p>
  <p>NVIDIA Nsight Systems for Linux contains a vulnerability in the .run installer, where an attacker could cause an OS command injection by supplying a malicious string to the installation path. A successful exploit of this vulnerability might lead to escalation of privileges, code execution, data tampering, denial of service, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33230">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33229 – NVIDIA Nsight Visual Studio for Windows contains a vulnerability in Nsight Monit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33229</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33229</guid>
    <pubDate>Tue, 20 Jan 2026 18:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33229</strong></p>
  <p>NVIDIA Nsight Visual Studio for Windows contains a vulnerability in Nsight Monitor where an attacker can execute arbitrary code with the same privileges as the NVIDIA Nsight Visual Studio Edition Monitor application. A successful exploit of this vulnerability may lead to escalation of privileges, code execution, data tampering, denial of service, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33229">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33228 – NVIDIA Nsight Systems contains a vulnerability in the gfx_hotspot recipe, where ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33228</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33228</guid>
    <pubDate>Tue, 20 Jan 2026 18:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33228</strong></p>
  <p>NVIDIA Nsight Systems contains a vulnerability in the gfx_hotspot recipe, where an attacker could cause an OS command injection by supplying a malicious string to the process_nsys_rep_cli.py script if the script is invoked manually. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33228">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33206 – NVIDIA NSIGHT Graphics for Linux contains a vulnerability where an attacker coul...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33206</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33206</guid>
    <pubDate>Wed, 14 Jan 2026 19:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33206</strong></p>
  <p>NVIDIA NSIGHT Graphics for Linux contains a vulnerability where an attacker could cause command injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and denial of service.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33206">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-33224 – NVIDIA Isaac Launchable contains a vulnerability where an attacker could cause a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33224</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33224</guid>
    <pubDate>Tue, 23 Dec 2025 17:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-33224</strong></p>
  <p>NVIDIA Isaac Launchable contains a vulnerability where an attacker could cause an execution with unnecessary privileges. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure and data tampering.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-250</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33224">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-33223 – NVIDIA Isaac Launchable contains a vulnerability where an attacker could cause a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33223</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33223</guid>
    <pubDate>Tue, 23 Dec 2025 17:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-33223</strong></p>
  <p>NVIDIA Isaac Launchable contains a vulnerability where an attacker could cause an execution with unnecessary privileges. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure and data tampering.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-250</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33223">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-33222 – NVIDIA Isaac Launchable contains a vulnerability where an attacker could exploit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33222</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33222</guid>
    <pubDate>Tue, 23 Dec 2025 17:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-33222</strong></p>
  <p>NVIDIA Isaac Launchable contains a vulnerability where an attacker could exploit a hard-coded credential issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, and data tampering.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-798</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33222">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33235 – NVIDIA Resiliency Extension for Linux contains a vulnerability in the checkpoint...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33235</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33235</guid>
    <pubDate>Tue, 16 Dec 2025 18:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33235</strong></p>
  <p>NVIDIA Resiliency Extension for Linux contains a vulnerability in the checkpointing core, where an attacker may cause a race condition. A successful exploit of this vulnerability might lead to information disclosure, data tampering, denial of service, or escalation of privileges.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33235">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33226 – NVIDIA NeMo Framework for all platforms contains a vulnerability where malicious...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33226</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33226</guid>
    <pubDate>Tue, 16 Dec 2025 18:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33226</strong></p>
  <p>NVIDIA NeMo Framework for all platforms contains a vulnerability where malicious data created by an attacker may cause a code injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33226">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33225 – NVIDIA Resiliency Extension for Linux contains a vulnerability in log aggregatio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33225</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33225</guid>
    <pubDate>Tue, 16 Dec 2025 18:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33225</strong></p>
  <p>NVIDIA Resiliency Extension for Linux contains a vulnerability in log aggregation, where an attacker could cause predictable log-file names. A successful exploit of this vulnerability may lead to escalation of privileges, code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-61</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33225">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33212 – NVIDIA NeMo Framework contains a vulnerability in model loading that could allow...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33212</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33212</guid>
    <pubDate>Tue, 16 Dec 2025 18:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33212</strong></p>
  <p>NVIDIA NeMo Framework contains a vulnerability in model loading that could allow an attacker to exploit improper control mechanisms if a user loads a maliciously crafted file. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33212">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-33210 – NVIDIA Isaac Lab contains a deserialization vulnerability.  A successful exploit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33210</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33210</guid>
    <pubDate>Tue, 16 Dec 2025 18:16:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-33210</strong></p>
  <p>NVIDIA Isaac Lab contains a deserialization vulnerability.  A successful exploit of this vulnerability might lead to code execution.</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33210">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33214 – NVIDIA NVTabular for Linux contains a vulnerability in the Workflow component, w...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33214</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33214</guid>
    <pubDate>Tue, 09 Dec 2025 18:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33214</strong></p>
  <p>NVIDIA NVTabular for Linux contains a vulnerability in the Workflow component, where a user could cause a deserialization issue. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33214">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33213 – NVIDIA Merlin Transformers4Rec for Linux contains a vulnerability in the Trainer...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33213</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33213</guid>
    <pubDate>Tue, 09 Dec 2025 18:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33213</strong></p>
  <p>NVIDIA Merlin Transformers4Rec for Linux contains a vulnerability in the Trainer component, where a user could cause a deserialization issue. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33213">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33211 – NVIDIA Triton Server for Linux contains a vulnerability where an attacker may ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33211</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33211</guid>
    <pubDate>Wed, 03 Dec 2025 19:15:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33211</strong></p>
  <p>NVIDIA Triton Server for Linux contains a vulnerability where an attacker may cause an improper validation of specified quantity in input. A successful exploit of this vulnerability may lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-1284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33211">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33208 – NVIDIA TAO contains a vulnerability where an attacker may cause a resource to be...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33208</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33208</guid>
    <pubDate>Wed, 03 Dec 2025 19:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33208</strong></p>
  <p>NVIDIA TAO contains a vulnerability where an attacker may cause a resource to be loaded via an uncontrolled search path. A successful exploit of this vulnerability may lead to escalation of privileges, data tampering, denial of service, information disclosure.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33208">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33201 – NVIDIA Triton Inference Server contains a vulnerability where an attacker may ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33201</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33201</guid>
    <pubDate>Wed, 03 Dec 2025 19:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33201</strong></p>
  <p>NVIDIA Triton Inference Server contains a vulnerability where an attacker may cause an improper check for unusual or exceptional conditions issue by sending extra large payloads. A successful exploit of this vulnerability may lead to denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-754</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33201">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33205 – NVIDIA NeMo framework contains a vulnerability in a predefined variable, where a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33205</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33205</guid>
    <pubDate>Tue, 25 Nov 2025 18:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33205</strong></p>
  <p>NVIDIA NeMo framework contains a vulnerability in a predefined variable, where an attacker could cause inclusion of functionality from an untrusted control sphere by use of a predefined variable. A successful exploit of this vulnerability may lead to code execution.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-829</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33205">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33204 – NVIDIA NeMo Framework for all platforms contains a vulnerability in the NLP and ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33204</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33204</guid>
    <pubDate>Tue, 25 Nov 2025 18:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33204</strong></p>
  <p>NVIDIA NeMo Framework for all platforms contains a vulnerability in the NLP and LLM components, where malicious data created by an attacker could cause code injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33204">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33203 – NVIDIA NeMo Agent Toolkit UI for Web contains a vulnerability in the chat API en...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33203</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33203</guid>
    <pubDate>Tue, 25 Nov 2025 18:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33203</strong></p>
  <p>NVIDIA NeMo Agent Toolkit UI for Web contains a vulnerability in the chat API endpoint where an attacker may cause a Server-Side Request Forgery. A successful exploit of this vulnerability may lead to information disclosure and denial of service.</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33203">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33189 – NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33189</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33189</guid>
    <pubDate>Tue, 25 Nov 2025 18:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33189</strong></p>
  <p>NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause an out-of-bound write. A successful exploit of this vulnerability might lead to code execution, data tampering, denial of service, information disclosure, or escalation of privileges.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33189">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33188 – NVIDIA DGX Spark GB10 contains a vulnerability in hardware resources where an at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33188</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33188</guid>
    <pubDate>Tue, 25 Nov 2025 18:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33188</strong></p>
  <p>NVIDIA DGX Spark GB10 contains a vulnerability in hardware resources where an attacker could tamper with hardware controls. A successful exploit of this vulnerability might lead to information disclosure, data tampering, or denial of service.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33188">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-33187 – NVIDIA DGX Spark GB10 contains a vulnerability in SROOT, where an attacker could...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33187</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33187</guid>
    <pubDate>Tue, 25 Nov 2025 18:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-33187</strong></p>
  <p>NVIDIA DGX Spark GB10 contains a vulnerability in SROOT, where an attacker could use privileged access to gain access to SoC protected areas. A successful exploit of this vulnerability might lead to code execution, information disclosure, data tampering, denial of service, or escalation of privileges.</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33187">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33184 – NVIDIA Isaac-GR00T for all platforms contains a vulnerability in a Python compon...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33184</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33184</guid>
    <pubDate>Tue, 18 Nov 2025 17:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33184</strong></p>
  <p>NVIDIA Isaac-GR00T for all platforms contains a vulnerability in a Python component, where an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33184">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33183 – NVIDIA Isaac-GR00T for all platforms contains a vulnerability in a Python compon...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33183</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33183</guid>
    <pubDate>Tue, 18 Nov 2025 17:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33183</strong></p>
  <p>NVIDIA Isaac-GR00T for all platforms contains a vulnerability in a Python component, where an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33183">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
