Executive brief
NVIDIA Dynamo for Linux is a software component used in GPU-accelerated computing environments. A server-side request forgery (SSRF) vulnerability allows attackers to make unauthorized requests from the server, potentially exposing sensitive information or accessing internal resources that should not be publicly accessible.
Technical details
The vulnerability is a server-side request forgery (SSRF) in NVIDIA Dynamo for Linux that allows an attacker to forge requests originating from the affected server. The attack vector appears to be network-accessible, enabling remote exploitation without requiring authentication. A successful exploit could result in information disclosure by accessing internal services, metadata endpoints, or confidential resources. The vulnerability has been assigned CVSS 7.5 (high severity) and was published on August 4, 2026; patch status and detailed mitigation steps should be verified against NVIDIA's official security advisory.
Affected products
- NVIDIA Dynamo for Linux
Timeline
- 2026-08-04: disclosed