CVE-2026-24237
Improper Deserialization in NVIDIA NVTabular
Publication date: 2026-06-02
Last updated on: 2026-06-02
Assigner: NVIDIA Corporation
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| nvidia | nvtabular | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-502 | The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
CVE-2026-24237 is a vulnerability in NVIDIA NVTabular involving improper deserialization of untrusted data. This means that the software incorrectly processes data from untrusted sources, which can allow an attacker to manipulate the deserialization process.
A successful exploit of this vulnerability could enable an attacker to execute arbitrary code, tamper with data, or disclose sensitive information.
How can this vulnerability impact me? :
This vulnerability can have serious impacts including unauthorized code execution, which could allow attackers to take control of affected systems.
It can also lead to data tampering, compromising the integrity of your data, and information disclosure, exposing sensitive information to unauthorized parties.