LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →
Home / Vulnerability Intelligence / CVE-2026-24189

CVE-2026-24189 - Vulnerability Analysis

HighCVSS: 8.2

Last Updated: April 21, 2026

NVIDIA CUDA-Q - Out of Bounds Read

Published: April 21, 2026Updated: April 21, 2026Remote Exploitable

Overview

NVIDIA CUDA-Q contains an out-of-bounds read vulnerability caused by improper input validation in an endpoint, letting unauthenticated attackers cause denial of service and information disclosure, exploit requires crafted malicious request.

Severity & Score

Severity: High
CVSS Score: 8.2
EPSS Score: 0.0%(Probability of exploitation in next 30 days)

Impact

Unauthenticated attackers can cause denial of service and disclose information by triggering out-of-bounds read.

Mitigation

Update to the latest version of NVIDIA CUDA-Q.

Social Media Activity(3 posts)

TheHackerWire
TheHackerWire
@thehackerwire
Apr 21, 2026

🟠 CVE-2026-24189 - High (8.2) NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated attacker could cause an out-of-bounds read by sending a maliciously crafted request. A successful exploit of this vulnerability might lead to denial of service and inf... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-24189/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Apr 21, 2026

🟠 CVE-2026-24189 - High (8.2) NVIDIA CUDA-Q contains a vulnerability in an endpoint, where an unauthenticated attacker could cause an out-of-bounds read by sending a maliciously crafted request. A successful exploit of this vulnerability might lead to denial of service and inf... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-24189/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
AA
AA
@AAKL
Apr 21, 2026

* Broadcom has a new advisory for a high-severity vulnerability: Output Management Web Viewer 12.1 Vulnerability in Microsoft JDBC Driver for SQL Server https://support.broadcom.com/web/ecx/security-advisory * Two advisories from NVIDIA today: - CVE-2026-24189: Security Bulletin: NVIDIA CUDA-Q - April 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5820 - CVE-2026-24177 and CVE-2026-24176: NVIDIA KAI Scheduler - April 2026 https://nvidia.custhelp.com/app/answers/detail/a_id/5818 * Dell: - High-severity: Security Update for Dell PowerProtect Data Domain Multiple Vulnerabilities https://www.dell.com/support/kbdoc/en-us/000450699/dsa-2026-060-security-update-for-dell-powerprotect-data-domain-multiple-vulnerabilities #broadcom #infosec #vulnerability #Dell #Nvidia #vulnerability

View original post

Details

CVE ID
CVE-2026-24189
Severity
High
CVSS Score
8.2
Type
out_of_bounds_rw
Status
new
EPSS
0.0%
Social Posts
3

CWE

  • CWE-125

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H

EPSS Score

0.0%Probability of exploitation in the next 30 days