Deserialization Flaw in NVIDIA NeMo's TabularTokenizer Class
CVE-2026-65179

8.8HIGH

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
22 September 2026

What is CVE-2026-65179?

NVIDIA NeMo has a vulnerability within its TabularTokenizer class that improperly handles the deserialization of untrusted .pkl files using pickle.load() without adequate validation. This oversight allows an attacker to craft a malicious payload that, when processed, could lead to arbitrary code execution, unauthorized data modification, denial of service, and potential exposure of sensitive information.

Affected Version(s)

NeMo Speech All platforms 0.0 to 2.9

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.