11 published AI models are associated with this package: 0 name it in a requirements or pyproject file, 11 load it or import it directly, and 0 are inferred from the runtime stack their declared library pulls in. Only 0 state a version requirement, so this is not a count of affected models.
cvss
0.0
high
severity out of 10
epss
0.00%
medium
chance of exploitation in 30 days, 49th percentile of all CVEs
xyz score
0.0
low
CyberXYZ composite out of 10
fig. 01 — GHSA-v7v2-m736-cf3c, the advisory selected below
NVIDIA NeMo Framework contains a vulnerability where an attacker may cause remote code execution. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure and data tampering.
// cvss v3.1 vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack vector
Local
Attack complexity
Low
Privileges required
Low
User interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Checked 2026-09-30 at 23:45 UTC. The most recent advisory here was published 2026-03-24. Updated continuously from NVD, GHSA, OSV and CNA feeds.