Junglewise Threat Intelligence

CVE-2026-47614: NVIDIA Dynamo for Linux server-side request forgery

CVE-2026-47614 · Severity: high · CVSS 7.5 · Published 2026-08-04

Technologies: Nvidia Dynamo, Linux Kernel, Nvidia Dynamo for Linux. Vendors: Nvidia, Linux.

Executive brief

NVIDIA Dynamo for Linux is a software component used in GPU-accelerated computing environments. A server-side request forgery (SSRF) vulnerability allows attackers to make unauthorized requests from the server, potentially exposing sensitive information or accessing internal resources that should not be publicly accessible.

Technical details

The vulnerability is a server-side request forgery (SSRF) in NVIDIA Dynamo for Linux that allows an attacker to forge requests originating from the affected server. The attack vector appears to be network-accessible, enabling remote exploitation without requiring authentication. A successful exploit could result in information disclosure by accessing internal services, metadata endpoints, or confidential resources. The vulnerability has been assigned CVSS 7.5 (high severity) and was published on August 4, 2026; patch status and detailed mitigation steps should be verified against NVIDIA's official security advisory.

Affected products

  • NVIDIA Dynamo for Linux

Timeline

  • 2026-08-04: disclosed

References

Related threats