CVE-2026-8035: Ni Ni-Pal

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

Improper input validation in the NI-PAL kernel driver may allow a local authenticated user to cause a denial of service by triggering a crash due to a NULL pointer dereference. This vulnerability affects NI-PAL 26.3.0 and prior versions on Windows and Linux.

Affected products

  • Ni Ni-Pal: up to and including 26.3.0

Published 2026-06-02. Last modified 2026-07-22.