logo

NVIDIA NemoClaw Flaw Lets Attackers Hijack AI Agents Through DNS Rebinding

ID: 638c7f87-010a-5502-929a-3e11e9b0c46a

STIX ID: report--638c7f87-010a-5502-929a-3e11e9b0c46a

Feed Name: Cyber Press

Threat Score
72/100

Date Published: 2026-08-26

Date Updated: 2026-08-26

Author: Tamilselvan

...
...

A critical vulnerability (CVE-2026-65105) in NVIDIA NemoClaw arises because NemoClaw starts Ollama bound to 0.0.0.0, exposing an unauthenticated HTTP API on port 11434; researchers show DNS rebinding can bypass browser-origin protections to let attacker-controlled webpages access the local model server, enumerate or modify models, and persistently poison model templates used by OpenClaw agents — organizations should restrict Ollama exposure, firewall the port, and monitor template changes.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.