GPU VulnDB

Database/AI/ML frameworks & serving

NVIDIA NemoClaw: deployment process fails to validate certificates properly

CVE-2026-65084AI/ML frameworks & servingcurated

Impact

The deployment path accepts certificates it should reject, so anyone able to sit on the connection it makes can answer it instead of the intended endpoint. NVIDIA lists information disclosure, data tampering, code execution and privilege escalation as consequences, which is what you get when a deployment channel can be substituted: credentials and configuration flow to the wrong peer, and what comes back is trusted. Deployments typically run across many nodes from the same automation, so an intercepted deployment is a fleet-wide event rather than a single-node one.

Who can reach it

An attacker positioned to intercept the deployment connection (CVSS AV:N/PR:N, high complexity - the position is the hard part). No authentication to the product is required.

What to do

NVIDIA product-security bulletin 5872 carries the fixed version; the CVE record does not state one. Until it is applied, run deployments only over network paths you control end to end and re-deploy from a patched build afterwards, since anything deployed through the flawed path should be considered of unverified provenance.

References

Related entries

All AI/ML frameworks & serving entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.