All 3 CVE vulnerabilities found in Red Hat OpenShift AI (RHOAI), with AI-generated Chinese analysis, references, and POCs.
This page documents known vulnerabilities for the Red Hat OpenShift AI product, specifically tracking weaknesses within the enterprise artificial intelligence platform. It serves as a technical reference for security analysts and system administrators managing RHOAI deployments. The content aggregates data related to software composition, configuration errors, and implementation flaws that affect the OpenShift AI environment. The collection includes vulnerability records spanning from early product releases through recent updates, ensuring a comprehensive historical view. This time range allows users to assess the security posture of the platform across different versions and lifecycle stages. The data is compiled from various sources, including vendor advisories, public databases, and community reports, to provide a unified perspective on security issues. Visitors can use this resource to track specific vendor advisories related to Red Hat OpenShift AI and understand the broader implications of identified weakness classes. By examining the vulnerability history, users can identify patterns, prioritize remediation efforts, and verify if their current installations are exposed to known risks. This page is designed to support informed decision-making regarding patch management and security hardening strategies. It does not cover marketing features or general product capabilities, focusing exclusively on technical security findings. The information is presented in a neutral, factual manner to facilitate accurate risk assessment and compliance reporting for organizations utilizing this AI platform.
Vendor: Red Hat
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-86332 | Odh-dashboard: odh-dashboard: nim credential secret readable by any authenticated user CWE-862 | 6.5 | Medium | 2026-09-07 |
| CVE-2026-15574 | Vllm-orchestrator-gateway: vllm-orchestrator-gateway: authorization header and full chat payloads logged at hard-coded debug default CWE-538 | 7.5 | High | 2026-07-13 |
| CVE-2026-23536 | Feast: unauthenticated arbitrary file read CWE-22 | 7.5 | High | 2026-03-20 |
All 3 known CVE vulnerabilities affecting Red Hat OpenShift AI (RHOAI) with full Chinese analysis, references, and POCs where available.