Executive brief
NVIDIA BioNeMo is a generative AI platform used by researchers and developers for drug discovery and biological research. A security flaw in the framework allows an attacker to trick the system into processing malicious data, which could lead to the complete takeover of the affected server. This could result in the theft of sensitive research data, disruption of critical biological simulations, or unauthorized modification of experimental results.
Technical details
A deserialization vulnerability (CWE-502) exists in the NVIDIA BioNeMo Framework due to the improper handling of untrusted data. An attacker can exploit this by providing a specially crafted serialized object that, when processed by the framework, triggers the execution of arbitrary code. The attack vector is via the network and requires minimal user interaction, though it does not require prior authentication. Successful exploitation grants the attacker the ability to execute commands with the privileges of the application, potentially leading to full system compromise, information disclosure, or persistent denial of service. A fix is available in versions incorporating commit f2c2b14.
Affected products
- NVIDIA BioNeMo Framework All versions that do not include commit f2c2b14
Timeline
- 2026-03-31: disclosed
- 2026-03-31: advisory