CVE-2026-24189: NVIDIA Cuda-Q

High severity, CVSS 8.2. EPSS: 0.3% chance of exploitation in the next 30 days.

NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated attacker could cause an out-of-bounds read by sending a maliciously crafted request. A successful exploit of this vulnerability might lead to denial of service and information disclosure.

Affected products

  • NVIDIA Cuda-Q: before 0.14.0 (fixed in 0.14.0)

Published 2026-04-21. Last modified 2026-06-17.