logo

NVIDIA Patches Three High-Severity NeMo Framework Code Injection Flaws

ID: 6ce04078-7ad0-5eac-8dba-8c77f9ff0858

STIX ID: report--6ce04078-7ad0-5eac-8dba-8c77f9ff0858

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-06-17

Date Updated: 2026-06-17

Author: Do Son

...
...

NVIDIA has released an urgent patch for three High-severity vulnerabilities in the open-source NeMo framework (CVE-2026-24155, CVE-2026-24252, CVE-2026-24228) that can enable code execution, OS command injection, and deserialization-based attacks; all versions up to 2.7.2 are affected and users should upgrade to 2.7.3 or later immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.