VYPR
High severity8.8NVD Advisory· Published Sep 22, 2026

CVE-2026-65179

CVE-2026-65179

Description

NVIDIA NeMo contains a vulnerability in the TabularTokenizer class where it deserializes an untrusted, attacker-controlled .pkl file via pickle.load() without validation. A successful exploit of this vulnerability may lead to code execution, data tampering, denial of service, and information disclosure.

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.