CVE-2026-61761: High severity Nvidia Megatron Bridge vulnerability
Published Sep 1, 2026
·Updated
NVIDIA Megatron Bridge contains a vulnerability where an attacker could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.
Affected Software
2 affected components
Nvidia Megatron Bridge
Nvidia Nemo Megatron Bridge<0.5.1
Event History
Sep 1, 2026
CVE Published
via MITRE·04:02 PM
Data Sourced
via MITRE·04:02 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
Is this vulnerability remotely exploitable?
The CVSS vector identifies the attack vector as local (AV:L), so an attacker needs local access to the affected environment.
2
What access does an attacker need, and is user interaction required?
The vector indicates low privileges are required (PR:L) and no user interaction is required (UI:N).