CVE-2026-24255
HIGHDescription
NVIDIA Dynamo for Linux contains a vulnerability in the multimodal embedding cache, where an attacker could cause a hash collision by submitting images that share an identical pixel byte sequence but have different dimensions. A successful exploit of this vulnerability might lead to data tampering.
Is your site exposed to CVE-2026-24255?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
EPSS — Exploit Prediction
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
Weakness Type (CWE)
References
Frequently Asked Questions
What is CVE-2026-24255? +
How severe is CVE-2026-24255? +
How do I check if I'm vulnerable to CVE-2026-24255? +
Related Vulnerabilities
In Eclipse Ankaios versions 0.6.0 to before 1.0.4, `LogRule::matches` in the agent control-interface authorizer stops at the first wildcard pattern …
Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a …
Catalyst::Seal versions before 0.03 for Perl allow one request to disable a path or route a later one past an …
BullWall Ransomware Containment may not always detect an encrypted file. This issue affects a specific file inspection method that evaluates …
OpenClaw before 2026.5.26 contains a hostname validation vulnerability allowing attackers to bypass blocklist comparisons using trailing-dot notation in model or …
The IPv6 branch of the FastCGI client access check compares only the first 12 bytes of a 16-byte IPv6 address, …