github.com
https://github.com/NVIDIA/product-security/tree/main/2026/5842 CVE-2026-24255
HIGH
NVIDIA Dynamo Multimodal Embedding Cache Hash Collision Data Tampering Vulnerability
Record summary
CVE-2026-24255 has a selected CVSS score of 7.5 (high).
Description
NVIDIA Dynamo for Linux contains a vulnerability in the multimodal embedding cache, where an attacker could cause a hash collision by submitting images that share an identical pixel byte sequence but have different dimensions. A successful exploit of this vulnerability might lead to data tampering.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 4, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
DynamoBrowse NVIDIA / DynamoDefault status: unaffected | CVE List | 0 to v1.1.0 | affected |
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-24255 cve.org
https://www.cve.org/CVERecord?id=CVE-2026-24255