Security Advisory
CVE-2025-23312
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
NVIDIA NeMo Framework for all platforms contains a vulnerability in the retrieval services component, where malicious data created by an attacker could cause a code injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.