CVE-2026-24167: NVIDIA Unified Fabric Manager Enterprise - Ga

Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.

NVIDIA UFM Enterprise contains a vulnerability in the user management component, where an authenticated administrator could inject commands by sending a crafted API request. A successful exploit of this vulnerability might lead to code execution, escalation of privileges and information disclosure.

Affected products

  • NVIDIA Unified Fabric Manager Enterprise - Ga
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2023
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2024
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2025

Published 2026-08-25. Last modified 2026-08-28.