CVE-2026-65098CWE-1390

CVE-2026-65098

High · published August 26, 2026

CVSS v3.1
8.1
EPSS
1%
Percentile
49.6
In the wild
Unconfirmed
What it is

NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helper workflow, where an attacker could cause weak authentication. A successful exploit of this vulnerability might lead to code execution, information disclosure, and data tampering.

The record
Technical detail
CVSS v3.1
8.1 · HIGH
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00669 · 49.6th percentile
Weakness
CWE-1390 · Weak Authentication
Published
2026-08-26T01:17Z
Affected products (1)
ProductVersionsFixed in
nvidia/nemoclaw≤ 0.0.4
References (3)
EPSS history
Timeline
  • 27 AUG 06:41Z
    EPSS moved — → 1%
    epss
  • 25 AUG 20:15Z
    NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helper workflow, where an attacker could cause weak authentication
    cvelistv5