Skip to the stories
Saturday, 10 October 2026
Saved

Next edition

5:33

Headlines

Cybercrime and Scams

High severity NVIDIA DCGM Exporter vulnerability threatens internet exposed GPU servers

Hundreds of exposed GPU servers are vulnerable to a high-severity flaw in NVIDIA software that allows unauthenticated attackers to cause denial-of-service conditions.

FTMQ Security, written by our newsroom0 views

Share
Picture: Help Net Security

Unauthenticated attackers can exploit a high-severity vulnerability in NVIDIA DCGM Exporter to crash GPU monitoring services and disrupt artificial intelligence workloads. Help Net Security, CSO Online, and The Register all report that the security flaw allows remote attackers to cause denial-of-service conditions on exposed infrastructure. According to CSO Online, the component is also vulnerable to information disclosure attacks. [1][2][3]

The vulnerability is tracked as CVE-2026-47483 and carries a CVSS score of 8.2. Help Net Security reported that cybersecurity company Lava discovered the flaw and reported it to NVIDIA. NVIDIA published an official security bulletin regarding the issue on July 28, 2026. [1]

The issue stems from an unauthenticated resource exhaustion flaw in the software. CSO Online reported that thousands of exposed DCGM Exporter instances leak GPU telemetry, and some expose profiling endpoints that allow remote attackers to crash the service. Help Net Security noted that hundreds of internet-exposed graphics processing unit servers were open to the vulnerability. [1][2]

GPU servers are specialized computers built around graphics processing units to run artificial intelligence, machine learning, and scientific computing workloads. CSO Online explained that enterprises use the NVIDIA DCGM Exporter software component to monitor their artificial intelligence training and inference infrastructure. [1][2]

Share

In short

  • The NVIDIA DCGM Exporter vulnerability is tracked as CVE-2026-47483 with a CVSS score of 8.2.
  • Unauthenticated attackers can exploit the flaw to crash GPU monitoring and disrupt AI workloads.
  • NVIDIA issued a security bulletin addressing the vulnerability on July 28, 2026.
  • Security firm Lava discovered and reported the vulnerability to NVIDIA.

Sources

Every paragraph above points to the numbered items it rests on. Read the originals here.

  1. [1]High-severity NVIDIA vulnerability lets unauthenticated attackers crash GPU monitoringHelp Net Security, 14h ago (the report this story comes from)
  2. [2]Exposed Nvidia GPU monitors can reveal AI infrastructure secretsCSO Online, 13h ago
  3. [3]High-severity Nvidia bug could crash GPU monitoring on exposed serversThe Register, 1d ago
  4. [4]Lava Research Finds Thousands of Exposed AI GPU Servers, Uncovers High-Severity NVIDIA Vulnerability That Can Disrupt Them RemotelyVMblog, 12h ago
  5. [5]Lava Finds Thousands of Exposed GPU Servers and a High-Severity NVIDIA Monitoring FlawUnite.AI, 1d ago
  6. [6]Nvidia GPU servers exposed to crash risk via monitoring toolCybernews, 11h ago

Background

  1. [7]GeForce on Wikipedia
  2. [8]Microsoft Patches High Severity Privilege Escalation Flaw in Exchange Server FTMQ Security, 4d ago

Our newsroom writes these reports with the help of software, from the 8 sources listed and nothing else, and checks them against those sources. Facts can still be wrong or move on; the originals are the record. Spotted a mistake? Write to daniel@monsterkong.com.

Earlier reports of ours on the same people and subjects.

More in Cybercrime and Scams

Get the day in one email

Reports like this one, the top news of the last 24 hours, every morning. Free, one email a day; readers can comment under every report.

By signing up you agree to our terms and privacy policy. Unsubscribe any time.

Comments

Loading

Join the conversation

Comments are open to readers of our daily email: the top news of the last 24 hours, every morning, free. Sign up and the comment box opens.

Already on the list? Enter the same address and we will send a sign-in link.

By signing up you agree to our terms and privacy policy. Unsubscribe any time.