8.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Description
A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the `odh-dashboard` component of Red Hat OpenShift AI (RHOAI) allows for the disclosure of Kubernetes Service Account tokens through a NodeJS endpoint. This could enable an attacker to gain unauthorized access to Kubernetes resources.
AI Analysis
Disclosure of Kubernetes Service Account tokens through a NodeJS endpoint in odh-dashboard component of Red Hat OpenShift AI
Basic Information
ID
CVE-2026-5483
Source
redhat
Published
Apr 10, 2026 at 17:33
Modified
Apr 10, 2026 at 21:07
Affected Product
Vendor
Red Hat
Product
Red Hat OpenShift AI 2.16
Version
sha256:0a983da3de4ce816435e23da23c4b6f373008aaf2df2b9820bdcc77a9a110341
CWE Classification
AI Assessment
AI Score
8.5 / 10
AI Severity
High
Vendor
Red Hat
Product
Red Hat OpenShift AI
Version
2.16