VYPR

Merlin Transformers4Rec

by Nvidia

CVEs (3)

  • CVE-2025-33213HigDec 9, 2025
    risk 0.57cvss 8.8epss 0.00

    NVIDIA Merlin Transformers4Rec for Linux contains a vulnerability in the Trainer component, where a user could cause a deserialization issue. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.

  • CVE-2025-33233HigJan 20, 2026
    risk 0.51cvss 7.8epss 0.00

    NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability where an attacker could cause code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.

  • CVE-2025-23298HigAug 13, 2025
    risk 0.51cvss 7.8epss 0.00

    NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability in a python dependency, where an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.