← Terug naar overzicht

NVIDIA NemoClaw for Linux contains a critical vulnerability in its status and logs plugin commands that allows OS command injection. An attacker exploiting this flaw could achieve arbitrary code execution on the affected system. The vulnerability also enables data tampering, information disclosure, and denial of service attacks. The issue resides specifically in plugin command handling within the NemoClaw application. NVIDIA has published a security advisory referencing this CVE. The vulnerability has been assigned a high criticality rating given the potential for full system compromise.

Affected products

  • NVIDIA NemoClaw for Linux

Related CVE's

  • CVE-2026-65089

Categories

  • Enterprise Applications
  • Operating Systems