CVE-2026-24170: NVIDIA Unified Fabric Manager Enterprise - Ga

High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.

NVIDIA UFM Enterprise contains a vulnerability in the web interface authorization component, where an authenticated user could cause improper authentication by sending specially crafted HTTP requests. A successful exploit of this vulnerability might lead to code execution and escalation of privileges.

Affected products

  • NVIDIA Unified Fabric Manager Enterprise - Ga
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2023
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2024
  • NVIDIA Unified Fabric Manager Enterprise - LTS 2025

Published 2026-08-25. Last modified 2026-08-28.