{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-15581","assignerOrgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","state":"PUBLISHED","assignerShortName":"redhat","dateReserved":"2026-07-13T10:30:46.317Z","datePublished":"2026-08-10T20:44:18.319Z","dateUpdated":"2026-08-11T18:38:43.464Z"},"containers":{"cna":{"title":"Trustyai-service-operator: trustyai-service-operator: tas internal service bypasses kube-rbac-proxy, exposing unauthenticated quarkus api cluster-wide","metrics":[{"other":{"content":{"value":"Important","namespace":"https://access.redhat.com/security/updates/classification/"},"type":"Red Hat severity rating"}},{"cvssV3_1":{"attackComplexity":"LOW","attackVector":"ADJACENT_NETWORK","availabilityImpact":"HIGH","baseScore":8,"baseSeverity":"HIGH","confidentialityImpact":"HIGH","integrityImpact":"HIGH","privilegesRequired":"LOW","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","version":"3.1"},"format":"CVSS"}],"descriptions":[{"lang":"en","value":"A flaw was found in the TrustyAI Service (TAS) deployment. This vulnerability allows any pod on the cluster network to bypass authentication and directly access the TAS backend API. An attacker can exploit this to read, tamper with, or delete monitoring data and configurations, and inject arbitrary data into the service, potentially disrupting tenant operations."}],"affected":[{"vendor":"Red Hat","product":"Red Hat OpenShift AI 2.25","collectionURL":"https://catalog.redhat.com/software/containers/","packageName":"rhoai/odh-trustyai-service-operator-rhel9","defaultStatus":"affected","versions":[{"version":"1785187119","lessThan":"*","versionType":"rpm","status":"unaffected"}],"cpes":["cpe:/a:redhat:openshift_ai:2.25::el9"]},{"vendor":"Red Hat","product":"Red Hat OpenShift AI 3.3","collectionURL":"https://catalog.redhat.com/software/containers/","packageName":"rhoai/odh-trustyai-service-operator-rhel9","defaultStatus":"affected","versions":[{"version":"1785187521","lessThan":"*","versionType":"rpm","status":"unaffected"}],"cpes":["cpe:/a:redhat:openshift_ai:3.3::el9"]},{"vendor":"Red Hat","product":"Red Hat OpenShift AI 3.4","collectionURL":"https://catalog.redhat.com/software/containers/","packageName":"rhoai/odh-trustyai-service-operator-rhel9","defaultStatus":"affected","versions":[{"version":"1784993206","lessThan":"*","versionType":"rpm","status":"unaffected"}],"cpes":["cpe:/a:redhat:openshift_ai:3.4::el9"]}],"references":[{"url":"https://access.redhat.com/errata/RHSA-2026:53261","name":"RHSA-2026:53261","tags":["vendor-advisory","x_refsource_REDHAT"]},{"url":"https://access.redhat.com/errata/RHSA-2026:53262","name":"RHSA-2026:53262","tags":["vendor-advisory","x_refsource_REDHAT"]},{"url":"https://access.redhat.com/errata/RHSA-2026:53263","name":"RHSA-2026:53263","tags":["vendor-advisory","x_refsource_REDHAT"]},{"url":"https://access.redhat.com/security/cve/CVE-2026-15581","tags":["vdb-entry","x_refsource_REDHAT"]},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2499637","name":"RHBZ#2499637","tags":["issue-tracking","x_refsource_REDHAT"]}],"datePublic":"2026-08-10T18:45:25.541Z","problemTypes":[{"descriptions":[{"cweId":"CWE-306","description":"Missing Authentication for Critical Function","lang":"en","type":"CWE"}]}],"x_redhatCweChain":"CWE-306: Missing Authentication for Critical Function","timeline":[{"lang":"en","time":"2026-06-17T07:53:49.324Z","value":"Reported to Red Hat."},{"lang":"en","time":"2026-08-10T18:45:25.541Z","value":"Made public."}],"providerMetadata":{"orgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","shortName":"redhat","dateUpdated":"2026-08-11T18:38:43.464Z"},"x_generator":{"engine":"cvelib 1.8.0"}},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2026-08-11T14:58:21.080752Z","id":"CVE-2026-15581","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-08-11T15:23:07.774Z"}}]}}