Description
A flaw was found in odh-dashboard, the web console component of Red Hat OpenShift AI (RHOAI). Due to incorrect network binding, a malicious actor within the cluster can bypass authentication and impersonate any user by providing an arbitrary access token. This allows an attacker to gain unauthorized access to the Kubernetes API, potentially leading to arbitrary code execution, privilege escalation, or information disclosure.
Published: 2026-07-23
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw in the odh-dashboard component of Red Hat OpenShift AI allows a malicious actor inside the cluster to bypass authentication by sending a forged X-Forwarded-Access-Token header on backend port 8080. The server fails to validate the origin of this token, enabling the attacker to impersonate any user. This results in unauthorized access to the Kubernetes API, which can lead to arbitrary code execution, privilege escalation, or the disclosure of sensitive information. The weakness is classified as CWE‑346, reflecting an improper origin check of a trustable credential.

Affected Systems

The vulnerability impacts the Red Hat OpenShift AI (RHOAI) platform, specifically the odh-dashboard web console. All installations that expose odh-dashboard on the default backend port 8080 without additional origin validation are affected. No specific RHOAI version ranges are listed, so any version running this component is potentially susceptible.

Risk and Exploitability

The CVSS score of 8.8 indicates a high severity risk. The EPSS score of <1% shows a low but non-zero probability of exploitation; attackers would need network access within the cluster. The vulnerability is not yet listed in the CISA KEV catalog. Based on the description, the likely attack vector is via internal cluster traffic, exploiting the lack of origin validation on the X-Forwarded-Access-Token header to impersonate users.

Generated by OpenCVE AI on August 3, 2026 at 22:41 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest vendor patch for RHOAI that enforces origin validation on X-Forwarded-Access-Token headers.
  • Reconfigure the odh-dashboard service to bind only to local interfaces and restrict exposure of port 8080 to trusted internal nodes.
  • Disable or sanitize X-Forwarded-Access-Token headers in the ingress layer, ensuring that only authenticated upstream proxies can provide the token.

Generated by OpenCVE AI on August 3, 2026 at 22:41 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 11 Aug 2026 19:00:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:openshift_ai:2.25::el9
cpe:/a:redhat:openshift_ai:3.4::el9
References

Tue, 11 Aug 2026 05:15:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:openshift_ai cpe:/a:redhat:openshift_ai:3.3::el9
References

Thu, 23 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Red Hat
Red Hat red Hat Openshift Ai (rhoai)
Vendors & Products Red Hat
Red Hat red Hat Openshift Ai (rhoai)

Thu, 23 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 23 Jul 2026 11:00:00 +0000

Type Values Removed Values Added
Description A flaw was found in odh-dashboard, the web console component of Red Hat OpenShift AI (RHOAI). Due to incorrect network binding, a malicious actor within the cluster can bypass authentication and impersonate any user by providing an arbitrary access token. This allows an attacker to gain unauthorized access to the Kubernetes API, potentially leading to arbitrary code execution, privilege escalation, or information disclosure.
Title Odh-dashboard: odh-dashboard: backend port 8080 trusts x-forwarded-access-token without origin validation
First Time appeared Redhat
Redhat openshift Ai
Weaknesses CWE-346
CPEs cpe:/a:redhat:openshift_ai
Vendors & Products Redhat
Redhat openshift Ai
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Red Hat Red Hat Openshift Ai (rhoai)
Redhat Openshift Ai
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-08-11T18:38:47.193Z

Reserved: 2026-07-23T10:24:31.723Z

Link: CVE-2026-16745

cve-icon Vulnrichment

Updated: 2026-07-23T13:53:33.771Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-07-23T11:16:40.043

Modified: 2026-08-11T19:17:21.107

Link: CVE-2026-16745

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T22:45:04Z

Weaknesses