Deserialization Flaw in NVIDIA NeMo's TabularTokenizer Class
CVE-2026-65179
8.8HIGH
What is CVE-2026-65179?
NVIDIA NeMo has a vulnerability within its TabularTokenizer class that improperly handles the deserialization of untrusted .pkl files using pickle.load() without adequate validation. This oversight allows an attacker to craft a malicious payload that, when processed, could lead to arbitrary code execution, unauthorized data modification, denial of service, and potential exposure of sensitive information.
Affected Version(s)
NeMo Speech All platforms 0.0 to 2.9