Impact
The vulnerability resides in the Data Science Pipelines Operator, where the specification of database.customExtraParams can be manipulated to inject harmful parameters into the MySQL Data Source Name. By doing so, an attacker can enable the LOCAL INFILE option and exfiltrate files from the operator pod, including sensitive artifacts like the service account token.
Affected Systems
This flaw affects Red Hat OpenShift AI deployments that include the Data Science Pipelines Operator. No specific version range is supplied, so any installation in which the operator is running is potentially vulnerable.
Risk and Exploitability
The CVSS score of 8.8 indicates high severity, and the lack of an EPSS score or KEV listing suggests limited public exploitation data. The attack requires only namespace editing privileges, which grants the attacker the ability to contact the operator pod and craft a malicious DSN, making the vulnerability readily actionable for anyone with that level of access.
OpenCVE Enrichment