{"id":"CVE-2026-65179","published":"2026-09-22T15:17:13.670","lastModified":"2026-09-22T19:37:36.747","description":"NVIDIA NeMo contains a vulnerability in the TabularTokenizer class where it deserializes an untrusted, attacker-controlled .pkl file via pickle.load() without validation. A successful exploit of this vulnerability may lead to code execution, data tampering, denial of service, and information disclosure.","cvssScore":8.8,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","cwes":["CWE-502"],"vendors":[],"products":[],"references":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5885","tags":[]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-65179","tags":[]},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-65179","tags":[]}],"exploitRefs":[{"url":"https://github.com/NVIDIA/product-security/tree/main/2026/5885","tags":[]}],"hasPoc":true,"ai":{"summary":"The vulnerability in NVIDIA NeMo's TabularTokenizer class allows an attacker to execute arbitrary code by deserializing an untrusted .pkl file, leading to significant security risks.","exploitability":"Exploitation requires an attacker to provide a malicious .pkl file, which can be challenging if the system enforces strict file input validation.","blast_radius":"If exploited, this vulnerability could result in code execution, data tampering, denial of service, and information disclosure, affecting the system's integrity and availability.","remediation":"Upgrade to the latest version of NVIDIA NeMo or apply the specific patch provided by the vendor.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["rce","deserialization","code-execution"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-28T08:54:53.486Z"}}