Red Hat Openshift AI (Rhoai)
40 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Red Hat Openshift AI (Rhoai), a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
Red Hat Openshift AI (Rhoai) CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 1 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 1 |
| 2025-06 | 1 |
| 2025-07 | 0 |
| 2025-08 | 1 |
| 2025-09 | 0 |
| 2025-10 | 1 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 2 |
| 2026-02 | 1 |
| 2026-03 | 2 |
| 2026-04 | 2 |
| 2026-05 | 0 |
| 2026-06 | 6 |
| 2026-07 | 6 |
| 2026-08 | 11 |
| 2026-09 | 4 |
Severity
How the 40 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical4
- High18
- Medium17
- Low1
Latest CVEs
The 15 most recently published vulnerabilities affecting Red Hat Openshift AI (Rhoai).
- CVE-2026-87743Quarkus-vertx-http: authorization bypass via path normalization discrepancy in quarkus http security7.5
- CVE-2026-92091Jwcrypto: jwcrypto: denial of service via o(n^2) duplicate check on unbounded jwk key_ops array5.9
- CVE-2026-86332Odh-dashboard: odh-dashboard: nim credential secret readable by any authenticated user6.5
- CVE-2026-84185Jwcrypto: jwcrypto: general json jws kid binding bypass during jwkset verification5.9
- CVE-2026-18393Ffmpeg: ffmpeg: heap buffer overflow in tdsc_load_cursor() via cur_fmt_mono cursor5.4
- CVE-2026-80179Jwcrypto: jwcrypto: denial of service via malformed jwe tokens5.9
- CVE-2026-15218Models-as-a-service: red hat openshift ai: maas-api and maas-controller serviceaccounts with excessive permissions lead to privilege escalation7.9
- CVE-2026-18950Odh-dashboard: odh-dashboard: confused-deputy privilege escalation via unchecked roleref in rolebinding creation8.8
- CVE-2026-18949Odh-dashboard: odh-dashboard: clusterrole grants cluster-wide crud on secrets and rbac management resources8.8
- CVE-2026-18948Feast: feast: unsafe dill deserialization of registry-stored udfs — rce on feature server and registry server9.9
- CVE-2026-18947Feast: feast: authorization bypass in /materialize endpoints enables dos via unauthorized full re-materialization8.5
- CVE-2026-18942Feast-operator: feast: feast apply cronjob runs user python with feature-server sa — tenant code to sa token escalation5.5
- CVE-2026-18941Feast: feast-operator: feast: default authentication mode is no_auth — shared multi-tenant instances deployed without authentication7.7
- CVE-2026-14450Maas-billing: maas api: privilege escalation via forged http headers due to missing authentication9.9
- CVE-2026-13717Rhoai maas: llm-d: maas/llm-d inference gateway: default allowedroutes.namespaces.from: all allows namespace users to hijack shared model-serving traffic (tokens, prompts, outputs)8.8
Product grouping is registry-driven, with AI assist and human review. How it works