Deserialization Vulnerability in NVIDIA Megatron Bridge
CVE-2026-61774

7.8HIGH

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
1 September 2026

What is CVE-2026-61774?

The NVIDIA Megatron Bridge presents a vulnerability where an attacker can exploit deserialization of untrusted data. This flaw opens the door for potential code execution, allowing unauthorized commands to be executed, along with risks of data tampering which could compromise the integrity of the data handled by the application. Additionally, the vulnerability may lead to information disclosure, where sensitive data might be exposed to malicious entities.

Affected Version(s)

Megatron Bridge All platforms 0.0 to 0.5.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.