CVE-2025-12805 is a high-severity vulnerability found in the Red Hat OpenShift AI (RHOAI) llama-stack-operator. This flaw allows unauthorized network access to Llama Stack services deployed in other namespaces due to the absence of a NetworkPolicy. An authenticated user in one namespace can exploit this to access another user’s Llama Stack instance, potentially viewing or manipulating sensitive data. With a CVSS score of 8.1 (High), the vulnerability has a low attack complexity and requires low privileges to achieve high confidentiality and integrity impacts. Currently, there is no evidence of active exploitation, nor are public exploit modules available, though it has received some community attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.25CPE matchmatch criteria | cpe:2.3:a:redhat:openshift_ai:2.25:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.