CVE List

CVE-2025-33204

Critical 7.8

NVIDIA NeMo Framework for all platforms contains a vulnerability in the NLP and LLM components, where malicious data created by an attacker could cause code injection. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.

Published November 25, 2025.

Affected software

Get alerts for Nvidia Nemo

Reference links