Unrated severityNVD Advisory· Published Aug 26, 2025· Updated Feb 26, 2026
CVE-2025-23312
CVE-2025-23312
Description
NVIDIA NeMo Framework for all platforms contains a vulnerability in the retrieval services component, where malicious data created by an attacker could cause a code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.
Affected products
2- NVIDIA/NeMo Frameworkv5Range: All versions prior to 2.4.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.