NVIDIA FLARE SDK contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sending a malicious FOBS- encoded message. A successful exploit of this vulnerability might lead to code execution.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 28 Apr 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Deserialization of Untrusted Data in NVIDIA FLARE SDK FOBS Leading to Code Execution |
Tue, 28 Apr 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NVIDIA FLARE SDK contains a vulnerability in FOBS, where an attacker may cause deserialization of untrusted data by sending a malicious FOBS- encoded message. A successful exploit of this vulnerability might lead to code execution. | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: nvidia
Published:
Updated: 2026-04-28T17:45:40.517Z
Reserved: 2026-01-21T19:09:32.732Z
Link: CVE-2026-24186
No data.
Status : Awaiting Analysis
Published: 2026-04-28T19:36:45.277
Modified: 2026-04-28T20:10:42.070
Link: CVE-2026-24186
No data.
OpenCVE Enrichment
Updated: 2026-04-28T23:15:43Z
Weaknesses