


Perceptive Security
SOC/SIEM Consultancy

NVIDIA AIStore framework contains a vulnerability where an attacker could bypass authentication. A successful exploit of this vulnerability might lead to denial…
Published:
30 juni 2026 om 22:00:00
Alert date:
1 juli 2026 om 19:17:24
Source:
nvd.nist.gov
Identity & Access, Cloud & Virtualization, Database & Storage
CVE-2026-24270 describes a critical authentication bypass vulnerability in the NVIDIA AIStore framework. An attacker exploiting this flaw could bypass authentication controls without authorization. Successful exploitation may lead to multiple severe impacts including denial of service, escalation of privileges, information disclosure, and data tampering. The vulnerability is currently awaiting full analysis on the NVD. NVIDIA has published a security advisory through their product-security GitHub repository. The breadth of potential impacts makes this a high-severity issue for organizations using NVIDIA AIStore. Users should monitor NVIDIA's security advisories for patches and mitigations. No active exploitation details are currently disclosed.
Technical details
Mitigation steps:
Affected products:
NVIDIA AIStore
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-24270
https://github.com/NVIDIA/product-security/tree/main/2026/5849
https://www.cve.org/CVERecord?id=CVE-2026-24270
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
