CVEFinder.io

CVE-2024-7557

⚠️ high
🔍 Scan for this CVE
Summary

A vulnerability was found in OpenShift AI that allows for authentication bypass and privilege escalation across models within the same namespace. When deploying AI models, the UI provides the option to protect models with authentication. However, credentials from one model can be used to access other models and APIs within the same namespace. The exposed ServiceAccount tokens, visible in the UI, can be utilized with oc --token={token} to exploit the elevated view privileges associated with the S

Description

A vulnerability was found in OpenShift AI that allows for authentication bypass and privilege escalation across models within the same namespace. When deploying AI models, the UI provides the option to protect models with authentication. However, credentials from one model can be used to access other models and APIs within the same namespace. The exposed ServiceAccount tokens, visible in the UI, can be utilized with oc --token={token} to exploit the elevated view privileges associated with the ServiceAccount, leading to unauthorized access to additional resources.

CVSS Score
8.8
High
EPSS Score
0.3
Exploit Probability
Published Date
2024-08-12
First Seen: 2026-01-05
📊 Relative Risk Intelligence

This CVE is High Risk - more severe than 81.1% of all 338,292 vulnerabilities in our database.

#64,055
Top 25% most severe
Severity Percentile
🎯 CISA SSVC Assessment Updated: Aug 9, 2024
🔍 Exploitation Status
None
No known exploits
⚙️ Automatable
NO
Requires human interaction
💥 Technical Impact
Total
Complete system compromise possible
🏆 Discovered By
Red Hat would like to thank Adam Bellusci (RedHat) for reporting this issue.
SSVC data provided by CISA
Last Modified 2026-03-19
Source NVD 🔗
CVSS Vector 3.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE IDs (Weakness Types)

📦 Affected Products 2

🔗 References 3

🔗 Related CVEs 6

CVE ID Severity CVSS EPSS Summary Published
CVE-2026-15154 🔶 medium 6.5 0.2 A flaw was found in `guardrails-detectors`, a component of Red Hat OpenShift AI. This vulnerability, known as Regular Ex... 2026-07-08
CVE-2023-54365 ⚠️ high 7.5 0.6 Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inheri... 2026-06-23
CVE-2026-42271 ⚠️ high 8.8 80.2 LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.74.2 to before vers... 2026-05-08
CVE-2026-1462 ⚠️ high 7.8 0.4 A vulnerability in the `TFSMLayer` class of the `keras` package, version 3.13.0, allows attacker-controlled TensorFlow S... 2026-04-13
CVE-2026-5483 ⚠️ high 8.5 0.5 A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the `odh-dashboard` component of Red Ha... 2026-04-10
CVE-2025-12805 ⚠️ high 8.1 0.0 A flaw was found in Red Hat OpenShift AI (RHOAI) llama-stack-operator. This vulnerability allows unauthorized access to ... 2026-03-26
These CVEs affect the same products