Researchers have revealed a security vulnerability (CVE-2026-65105) in Nvidia's NemoClaw, allowing attackers to compromise the local model server of an AI agent by simply visiting a malicious website. This poses significant risks for developers using the AI agent.