CVE List

CVE-2025-33199

Low 3.2

NVIDIA DGX Spark GB10 contains a vulnerability in SROOT firmware, where an attacker could cause incorrect control flow behavior. A successful exploit of this vulnerability might lead to data tampering.

Published November 25, 2025.

Affected software

Get alerts for Nvidia Dgx OS

Reference links