CVE-2026-5483
EUVD-2026-2154710.04.2026, 18:16
A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the `odh-dashboard` component of Red Hat OpenShift AI (RHOAI) allows for the disclosure of Kubernetes Service Account tokens through a NodeJS endpoint. This could enable an attacker to gain unauthorized access to Kubernetes resources.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| redhat | openshift_ai | 2.16 ≤ 𝑥 < 2.16.4 |
| redhat | openshift_ai | 2.25 ≤ 𝑥 < 2.25.4 |
| redhat | openshift_ai | 3.2 |
| redhat | openshift_ai | 3.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References