CVE-2026-5483

A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the `odh-dashboard` component of Red Hat OpenShift AI (RHOAI) allows for the disclosure of Kubernetes Service Account tokens through a NodeJS endpoint. This could enable an attacker to gain unauthorized access to Kubernetes resources.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redhat:openshift_ai:*:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_ai:*:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_ai:3.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_ai:3.3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-10 18:16

Updated : 2026-07-15 01:16


NVD link : CVE-2026-5483

Mitre link : CVE-2026-5483

CVE.ORG link : CVE-2026-5483


JSON object : View

Products Affected

redhat

  • openshift_ai
CWE
CWE-201

Insertion of Sensitive Information Into Sent Data