CVE-2025-33253: NVIDIA NeMo Framework Deserializes Untrusted Data
(updated )
NVIDIA NeMo Framework contains a vulnerability where an attacker could cause remote code execution by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.
References
Code Behaviors & Features
Detect and mitigate CVE-2025-33253 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →