Nemo
Vendor:
First CVE: Jan 10, 2022 · Active for 4 years
33
Total CVEs
More Total CVEs than 96% of tracked products
8.3
Avg CVEs / Year
Higher CVE frequency than 94% of tracked products
8.2
Avg CVSS
Higher Avg CVSS than 72% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Nemo over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 10, 2022
4 years ago
Most Recent CVE
Jun 16, 2026
38 days ago
CVE Severity & Scoring
Nemo33 CVEs
73%
24%
All CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local23 (69.7%)
Network10 (30.3%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low33 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None30 (90.9%)
Unknown0 (0.0%)
Required3 (9.1%)
Privileges Required
Low22 (66.7%)
High1 (3.0%)
None10 (30.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (33 CVEs).
33 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-24228HIGH NVIDIA NeMo Framework for Linux contains a vulnerability where an attacker may cause deserialization of untrusted data. A successful exploit of this vulnerability may lead to code | Jun 16, 2026 | 7.8 | 32 | NO | NO |
CVE-2026-24155HIGH NVIDIA NeMo Framework for all platforms contains a code injection vulnerability. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, | Jun 16, 2026 | 7.8 | 32 | NO | NO |
CVE-2026-24159CRITICAL NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalatio | Mar 24, 2026 | 9.8 | 31 | NO | NO |
CVE-2026-24157CRITICAL NVIDIA NeMo Framework contains a vulnerability in checkpoint loading where an attacker could cause remote code execution. A successful exploit of this vulnerability might lead to c | Mar 24, 2026 | 9.8 | 31 | NO | NO |
CVE-2025-23304CRITICAL NVIDIA NeMo library for all platforms contains a vulnerability in the model loading component, where an attacker could cause code injection by loading .nemo files with maliciously | Aug 13, 2025 | 9.8 | 30 | NO | NO |
CVE-2025-23303CRITICAL NVIDIA NeMo Framework for all platforms contains a vulnerability where a user could cause a deserialization of untrusted data by remote code execution. A successful exploit of this | Aug 13, 2025 | 9.8 | 30 | NO | NO |
CVE-2025-33245HIGH NVIDIA NeMo Framework contains a vulnerability where malicious data could cause remote code execution. A successful exploit of this vulnerability might lead to code execution, esca | Feb 18, 2026 | 8.8 | 29 | NO | NO |
CVE-2025-23251CRITICAL NVIDIA NeMo Framework contains a vulnerability where a user could cause an improper control of generation of code by remote code execution. A successful exploit of this vulnerabili | Apr 22, 2025 | 9.8 | 29 | NO | NO |
CVE-2025-23360CRITICAL NVIDIA Nemo Framework contains a vulnerability where a user could cause a relative path traversal issue by arbitrary file write. A successful exploit of this vulnerability may lead | Mar 11, 2025 | 9.8 | 29 | NO | NO |
CVE-2025-23250CRITICAL NVIDIA NeMo Framework contains a vulnerability where an attacker could cause an improper limitation of a pathname to a restricted directory by an arbitrary file write. A successful | Apr 22, 2025 | 9.8 | 28 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (33 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (33 CVEs).
Media Mentions
Signals from CVEs in this product scope (33 CVEs).
Top CNAs Publishing CVEs For Nemo
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.22.0 | 1 | 7.5 | 0.6% | 0 | 0 |