Executive brief
NVIDIA Megatron Bridge, a tool used for connecting large-scale AI models, contains a security flaw that could allow an attacker to trick the system into making unauthorized network requests. If exploited, this could lead to the exposure of sensitive internal information or unauthorized access to private data. This vulnerability requires a user to perform a specific action, such as opening a malicious file, to be triggered.
Technical details
NVIDIA Megatron Bridge for Linux (versions 0.0 through 0.4.0) is vulnerable to Server-Side Request Forgery (SSRF) classified as CWE-918. The vulnerability is triggered locally but requires user interaction (UI:R), suggesting an attacker must convince a user to process a malicious input that causes the bridge to make unintended requests. A successful exploit can lead to high impacts on confidentiality, integrity, and availability, potentially allowing an attacker to bypass network segmentation or leak sensitive data from internal services. The CVSS 3.1 base score is 7.8 (High).
Affected products
- NVIDIA Megatron-Bridge 0.0 to 0.4.0
Timeline
- 2026-07-01: disclosed: Initial publication of the CVE record