Security Advisory

CVE-2026-13717

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-10 20:44:01
Last updated 2026-08-27 15:06:00
Assigner redhat
CVSS score 8.8
State PUBLISHED

Description

A flaw was found in the Red Hat OpenShift AI (RHOAI) MaaS Gateway. Improper configuration of the Gateway in a model-serving context allows a standard user with low privileges to intercept, read, log, and alter all MaaS model traffic. This includes sensitive information such as access keys, input prompts, and outputs, leading to significant information disclosure and data tampering.