Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
If applying the update is not immediately possible, the vulnerability can be mitigated by disabling or removing the NIM (NVIDIA Inference Microservice) integration from the Red Hat OpenShift AI (RHOAI) environment.
Fri, 10 Apr 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift_ai:2.25::el9 cpe:/a:redhat:openshift_ai:3.2::el9 |
|
| References |
|
Fri, 10 Apr 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 10 Apr 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift_ai:3.3::el9 | |
| References |
|
Fri, 10 Apr 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the `odh-dashboard` component of Red Hat OpenShift AI (RHOAI) allows for the disclosure of Kubernetes Service Account tokens through a NodeJS endpoint. This could enable an attacker to gain unauthorized access to Kubernetes resources. | |
| Title | Odh-dashboard: odh dashboard kubernetes service account exposure | |
| First Time appeared |
Redhat
Redhat openshift Ai |
|
| Weaknesses | CWE-201 | |
| CPEs | cpe:/a:redhat:openshift_ai cpe:/a:redhat:openshift_ai:2.16::el8 |
|
| Vendors & Products |
Redhat
Redhat openshift Ai |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-04-10T21:07:45.000Z
Reserved: 2026-04-03T12:27:18.589Z
Link: CVE-2026-5483
Updated: 2026-04-10T18:34:03.174Z
Status : Received
Published: 2026-04-10T18:16:46.567
Modified: 2026-04-10T21:16:28.323
Link: CVE-2026-5483
No data.
OpenCVE Enrichment
No data.