VDB

CVE-2026-18621

CVE-2026-18621 PUBLISHED CVSS 7.6 HIGH

Reported by redhat · Published August 10, 2026

A flaw was found in Data Science Pipelines (DSP). An attacker with namespace editor privileges can bypass security hardening by submitting a malicious Argo Workflow through the V1 API path. This allows the API server to create pods with elevated privileges, acting as a 'confused deputy' on behalf of the attacker. Successful exploitation grants the attacker node-root access, enabling arbitrary code execution and full control over the underlying node.

Risk Scores

CVSS 3.1
7.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L

Affected Products

VendorProductVersions
Red HatRed Hat OpenShift AI 2.251785189934
Red HatRed Hat OpenShift AI 2.251788256711
Red HatRed Hat OpenShift AI 3.31785187920
Red HatRed Hat OpenShift AI 3.41784924951
Red HatRed Hat OpenShift AI 3.41787173417
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server
Red HatRed Hat AI Inference Server

…and 15 more

Timeline

  • Aug 10, 2026 CVE Published
  • Aug 11, 2026 Coalition ESS Score
  • Aug 19, 2026 CVE Updated
  • Aug 24, 2026 EPSS Score
  • Aug 26, 2026 EPSS Score
  • Aug 28, 2026 EPSS Score
  • Aug 30, 2026 EPSS Score
  • Sep 4, 2026 EPSS Score
  • Sep 9, 2026 EPSS Score
  • Sep 9, 2026 Distribution Patch
  • Sep 9, 2026 Distribution Patch
  • Sep 9, 2026 Distribution Patch

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›