


Perceptive Security
SOC/SIEM Consultancy

NVIDIA DCGM Exporter for all platforms contains a vulnerability in the /debug/pprof endpoints, where an attacker could cause uncontrolled resource consumption b…
Published:
28 juli 2026 om 00:00:00
Alert date:
28 juli 2026 om 19:04:58
Source:
nvd.nist.gov
Cloud & Virtualization, Zero-Day Vulnerabilities, Critical Infrastructure
CVE-2026-47483 affects NVIDIA DCGM Exporter across all platforms, exposing a vulnerability in the /debug/pprof endpoints. An unauthenticated attacker can submit concurrent profiling requests to cause uncontrolled resource consumption. The vulnerability requires no authentication, lowering the barrier for exploitation significantly. Successful exploitation can lead to denial of service, potentially disrupting GPU monitoring and management operations. Additionally, information disclosure is a possible outcome, meaning sensitive profiling data could be exposed to unauthorized parties. The vulnerability is currently awaiting full analysis by NVD. NVIDIA has published a security advisory via their product-security GitHub repository. Organizations using DCGM Exporter in any environment should monitor for patches and apply mitigations promptly.
Technical details
Mitigation steps:
Affected products:
NVIDIA DCGM Exporter
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-47483
https://github.com/NVIDIA/product-security/tree/main/2026/5857
https://www.cve.org/CVERecord?id=CVE-2026-47483
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
