← Back to search

CVE-2026-65179

8.8 HIGHpublic exploit available

Published 2026-09-22 · Updated 2026-09-22

AI risk analysis

Summary
The vulnerability in NVIDIA NeMo's TabularTokenizer class allows an attacker to execute arbitrary code by deserializing an untrusted .pkl file, leading to significant security risks.
Exploitability
Exploitation requires an attacker to provide a malicious .pkl file, which can be challenging if the system enforces strict file input validation.
Blast radius
If exploited, this vulnerability could result in code execution, data tampering, denial of service, and information disclosure, affecting the system's integrity and availability.
Detection
No reliable host or network indicator is derivable from the published description.
Prioritized remediation
Upgrade to the latest version of NVIDIA NeMo or apply the specific patch provided by the vendor.
rcedeserializationcode-execution

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

NVIDIA NeMo contains a vulnerability in the TabularTokenizer class where it deserializes an untrusted, attacker-controlled .pkl file via pickle.load() without validation. A successful exploit of this vulnerability may lead to code execution, data tampering, denial of service, and information disclosure.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses

CWE-502

Public exploit & PoC references

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.

Related CVEs

Related by shared AI tags and CWE weakness class. Browse the full archive.