NVIDIA FLARE SDK
cpe:2.3:a:nvidia:nvflare:*:*:*:*:*:*:*
- < 2.7.2
A vulnerability exists in the NVIDIA FLARE SDK prior to version 2.7.2, specifically within the FOBS component. This vulnerability allows an attacker to cause deserialization of untrusted data by sending a malicious FOBS-encoded message. Exploiting this vulnerability could result in unauthorized code execution.
Exploitation of this vulnerability could lead to arbitrary code execution on the affected system.
Users are advised to update to NVIDIA FLARE SDK version 2.7.2 or later. The updated version can be downloaded from the NVIDIA/NVFlare repository on GitHub.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.