NVIDIA NemoClaw Vulnerability CVE-2026-65087 Exposes Credentials

NVIDIA NemoClaw Vulnerability CVE-2026-65087 Exposes Credentials

First seen 27 Aug 2026, 08:10 UTC Feedlycvefeed.iocve.reportnvd.nist.govvuldb.com 45.0

Article Content

Browse articles
ThreatCluster

NVIDIA's NemoClaw has been identified with a credential vulnerability, CVE-2026-65087, which could allow attackers to exploit insufficiently protected credentials. This vulnerability may lead to information disclosure and data tampering. The CVSS base score assigned is 5.6, indicating a medium severity level. The vulnerability was published on August 25, 2026, and affects unspecified versions of the product. The potential impact includes unauthorized access to sensitive information. As of now, there are no confirmed reports of active exploitation or public proof-of-concept code. Security professionals are advised to monitor developments and apply any forthcoming patches. The vulnerability is categorized under CWE-522, which relates to insufficiently protected credentials.

Key Points: • CVE-2026-65087 affects NVIDIA NemoClaw with a CVSS score of 5.6. • The vulnerability may lead to information disclosure and data tampering. • No active exploitation or public proof-of-concept code has been reported yet.

Timeline

2026-08-25
CVE-2026-65087 published
NVIDIA disclosed a credential vulnerability in NemoClaw, affecting unspecified versions.
cvefeed.io
2026-08-25
CVE-2026-65087 details released
NVD published the first details for CVE-2026-65087, highlighting potential impacts.
Feedly
2026-08-25
CVE-2026-65082 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE