Skip to content
Red HatCVE-2026-15581

Red Hat: authentication bypass

High8.0CVE-2026-15581 · Published Aug 10, 2026 · updated Sep 21, 2026

A flaw was found in the TrustyAI Service (TAS) deployment. This vulnerability allows any pod on the cluster network to bypass authentication and directly access the TAS backend API. An attacker can exploit this to read, tamper with, or delete monitoring data and configurations, and inject arbitrary data into the service, potentially disrupting tenant operations.

Red Hat advisory

Affected versions

The source does not list versions here. See the source advisory for affected products and fixes.
Details and references

More Red Hat advisories

All Red Hat
Advisory
Red Hat QEMU: memory corruption
Medium4.4Aug 10
Red Hat Enterprise Linux: denial of service
Low3.9Aug 10
Red Hat Enterprise Linux 10: privilege escalation
High7.8Aug 10
Red Hat OpenShift AI (RHOAI): denial of service
High8.5Aug 10
Red Hat OpenShift AI (RHOAI): remote code execution
Critical9.9Aug 10
Red Hat OpenShift AI (RHOAI): privilege escalation
High8.8Aug 10

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.