Unrated severityNVD Advisory· Published Sep 24, 2025· Updated Sep 24, 2025
CVE-2025-23349
CVE-2025-23349
Description
NVIDIA Megatron-LM for all platforms contains a vulnerability in the tasks/orqa/unsupervised/nq.py component, where an attacker may cause a code injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
Affected products
2- NVIDIA/Megatron-LMv5Range: All versions prior to 0.13.1 and 0.12.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.