Race Condition Vulnerability in Brocade Fabric OS Management Interface
CVE-2026-94583

2.1LOW

Key Information:

Vendor

Brocade

Status
Vendor
CVE Published:
8 October 2026

What is CVE-2026-94583?

A race condition vulnerability in the request processing mechanism of the REST management interface on Brocade Fabric OS versions before 10.0.1 allows attackers to exploit a timing gap during concurrent handling of network management FCIP requests. This flaw allows the service to unintentionally share sensitive information, such as management details or configuration data, between requests. When a first request is in the process of being handled, it may receive configurations intended for a second request, thus exposing critical management information to unauthorized users.

Affected Version(s)

Fabric OS 0 < 10.0.1

References

CVSS V4

Score:
2.1
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.