CVE-2026-24164Disclosure(nvidia / bionemo_framework)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch nvidia bionemo_framework systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclosure, and data tampering.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-502

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • bionemo_framework

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • Peaked 2d ago at 2 mentions (2026-03-31); latest day: 1
  • 4 total mentions across 3 days

Affected systems

Vendors
Products
bionemo_framework

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-03-31: 2Mentions · 2026-04-01: 1Mentions · 2026-04-14: 1Patch / Workaround · 2026-04-01: 1Patch / Workaround · 2026-04-14: 1Technical Details · 2026-03-31: 2Technical Details · 2026-04-14: 103-3104-0104-14
Signal classification2 categories
Disclosure
250.0%
Patch
250.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-312
Disclosure2
2026-04-011
Patch1
2026-04-141
Patch1
Full discourse4 posts
  • Wazuh@wazuh
    Patch

    NVIDIA BioNeMo Framework is affected by CVE-2026-24164, a critical deserialization flaw that may allow code execution or data exposure via crafted input. It affects Linux versions without commit e5e58c8. Update to the latest code branch. Read on: https://cti.wazuh.com/vulnerabilities/cves/CVE-2026-24164 https://t.co/SqppoO3ZJA

    Post summary

    The post highlights a critical deserialization vulnerability in NVIDIA BioNeMo and advises users to update to the latest code branch to mitigate the risk.

    070132599
    8.0K followersView on X
  • Gray Hats@the_yellow_fall
    Patch

    NVIDIA fixes high-severity flaws (CVE-2026-24164) in BioNeMo. Attackers could execute code or disrupt AI drug discovery. Update to commit e5e58c8 now. #NVIDIA #BioNeMo #AISecurity #InfoSec #CyberSecurity #DrugDiscovery #Vulnerability #PatchNow #Linux https://securityonline.info/nvidia-bionemo-framework-security-update-cve-2026-24164/ https://t.co/27IUVEof8n

    Post summary

    NVIDIA issued a patch (commit e5e58c8) to address the high‑severity CVE‑2026‑24164 in BioNeMo, preventing potential code execution and disruption of AI drug discovery workflows.

    00020378
    12.3K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-24164: HIGH] Critical vulnerability in NVIDIA BioNeMo allows attackers to execute code, disclose information, and tamper with data through deserialization of untrusted input. #cybersecurity#cve,CVE-2026-24164,#cybersecurity https://cvefind.com/CVE-2026-24164

    Post summary

    The tweet announces the CVE-2026-24164 vulnerability in NVIDIA BioNeMo, describing its critical impact via deserialization of untrusted input.

    0000038
    617 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-24164 - High NVIDIA BioNeMo contains a vulnerability where a user could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, denial of servic... https://www.thehackerwire.com/vulnerability/CVE-2026-24164/ https://t.co/MZ15t5Z7W8

    Post summary

    The tweet announces a high‑severity vulnerability in NVIDIA BioNeMo involving untrusted deserialization that could enable code execution or denial of service. No PoC, exploit code, active exploitation, patch, or debunking claim is referenced.

    0000035
    163 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appnvidiabionemo_framework---

Explore more