CVE-2025-23298 Information

Description

NVIDIA Merlin Transformers4Rec for all platforms contains a vulnerability in a python dependency where an attacker could cause a code injection issue. A successful exploit of this vulnerability might lead to code execution escalation of privileges information disclosure and data tampering.

Reference

https://nvd.nist.gov/vuln/detail/CVE-2025-23298 https://nvidia.custhelp.com/app/answers/detail/a_id/5683 https://www.cve.org/CVERecord?id=CVE-2025-23298

CNNVD-202508-1409 (Published: 2025-08-13)

Share on: