Impact
The Red Hat OpenShift AI MaaS Gateway is misconfigured, allowing a standard user with low privileges to intercept, log, and alter all model‑serving traffic by hijacking the default AllowedRoutes.namespaces.from setting. This flaw exposes sensitive keys, prompts, and outputs, leading to information disclosure and potential data tampering. The weakness is a classic improper access control, identified as CWE‑284.
Affected Systems
Vendors impacted include Red Hat, specifically the OpenShift AI (RHOAI) platform that hosts the MaaS Gateway. No specific version ranges are listed, so any RHOAI installation that includes the MaaS Gateway component may be affected until a corrective update is applied.
Risk and Exploitability
The CVSS base score of 8.8 classifies the issue as high severity, and while an EPSS score is not currently available, the vulnerability is not listed in the CISA KEV catalog. The likely attack vector operates inside the cluster; a malicious actor in an authorized namespace can exploit the misconfiguration without additional network access or elevated privileges. Given the sensitivity of the exposed data, the risk of compromise is significant and should be addressed promptly.
OpenCVE Enrichment