CVE-2026-24166: NVIDIA Unified Fabric Manager Enterprise - Ga

Medium severity, CVSS 5.1. EPSS: 0.1% chance of exploitation in the next 30 days.

NVIDIA UFM Enterprise contains a vulnerability in the session management component, where an attacker could use a hard-coded cryptographic key to extract information. A successful exploit of this vulnerability might lead to information disclosure and escalation of privileges.

Affected products

  • NVIDIA Unified Fabric Manager Enterprise - Ga
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2023
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2024
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2025

Published 2026-08-25. Last modified 2026-08-28.