CVE-2026-5483: Odh-dashboard: odh dashboard kubernetes service account exposure
Published Apr 3, 2026
·Updated
A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the odh-dashboard component of Red Hat OpenShift AI (RHOAI) allows for the disclosure of Kubernetes Service Account tokens through a NodeJS endpoint. This could enable an attacker to gain unauthorized access to Kubernetes resources.
Affected Software
5 affected components
Red Hat odh-dashboard
redhat OpenShift AI>=2.16<2.16.4
redhat OpenShift AI>=2.25<2.25.4
redhat OpenShift AI=3.2
redhat OpenShift AI=3.3
Event History
Apr 3, 2026
Data Sourced
via Red Hat·12:49 PM
DescriptionSeverityAffected Software
Apr 10, 2026
CVE Published
via MITRE·05:33 PM
Data Sourced
via MITRE·05:33 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:16 PM
DescriptionSeverityWeaknessAffected Software
Aug 24, 58276
Event
via FIRST·06:28 PM