Openshift Ai
Vendor:
First CVE: Aug 12, 2024 · Active for 1 year
7
Total CVEs
More Total CVEs than 83% of tracked products
3.5
Avg CVEs / Year
Higher CVE frequency than 82% of tracked products
8.2
Avg CVSS
Higher Avg CVSS than 72% of tracked products
14.3%
KEV Rate
Higher KEV Rate than 98% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Openshift Ai over time
Volume of CVEsAvg CVSS Base Score
First CVE
Aug 12, 2024
23 months ago
Most Recent CVE
Jul 8, 2026
17 days ago
CVE Severity & Scoring
Openshift Ai7 CVEs
14%
71%
14%
All CVEs352,708 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (14.3%)
Network5 (71.4%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (14.3%)
Attack Complexity
Low7 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None6 (85.7%)
Unknown0 (0.0%)
Required1 (14.3%)
Privileges Required
Low4 (57.1%)
High0 (0.0%)
None3 (42.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-42271HIGH LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.74.2 to before version 1.83.7, two endpoints used to preview an MCP server befo | May 8, 2026 | 8.8 | 98 | YES | YES |
CVE-2026-5483CRITICAL A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the `odh-dashboard` component of Red Hat OpenShift AI (RHOAI) allows for the disclosure of Kubernet | Apr 10, 2026 | 9.9 | 36 | NO | NO |
CVE-2026-1462HIGH A vulnerability in the `TFSMLayer` class of the `keras` package, version 3.13.0, allows attacker-controlled TensorFlow SavedModels to be loaded during deserialization of `.keras` m | Apr 13, 2026 | 7.8 | 33 | NO | NO |
CVE-2023-54365HIGH Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inherited from the Go standard library's HTTP/2 implementation (CV | Jun 23, 2026 | 7.5 | 32 | NO | NO |
CVE-2025-12805HIGH A flaw was found in Red Hat OpenShift AI (RHOAI) llama-stack-operator. This vulnerability allows unauthorized access to Llama Stack services deployed in other namespaces via direct | Mar 26, 2026 | 8.1 | 28 | NO | NO |
CVE-2026-15154MEDIUM A flaw was found in `guardrails-detectors`, a component of Red Hat OpenShift AI. This vulnerability, known as Regular Expression Denial of Service (ReDoS), allows a remote attacker | Jul 8, 2026 | 6.5 | 27 | NO | NO |
CVE-2024-7557HIGH A vulnerability was found in OpenShift AI that allows for authentication bypass and privilege escalation across models within the same namespace. When deploying AI models, the UI p | Aug 12, 2024 | 8.8 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (7 CVEs).
CISA KEV
1 CVE
14.3% of CVEs· 98th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
14.3% of CVEs· 97th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (7 CVEs).
Media Mentions
Signals from CVEs in this product scope (7 CVEs).
Top CNAs Publishing CVEs For Openshift Ai
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 3.4 | 1 | 8.8 | 83.0% | 1 | 1 |
| 3.3 | 1 | 9.9 | 0.5% | 0 | 0 |
| 3.2 | 1 | 9.9 | 0.5% | 0 | 0 |
| 2.25 | 1 | 8.1 | 0.4% | 0 | 0 |