CVE-2026-65125: NVIDIA Infra Controller

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

NVIDIA Infrastructure Controller for Linux contains a vulnerability where an attacker could cause external control of a file name or path. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and denial of service.

Affected products

  • NVIDIA Infra Controller: before 2.0.0 (fixed in 2.0.0)

Published 2026-09-22. Last modified 2026-09-29.