rhoai/odh-trustyai-service-operator-rhel9 vulnerabilities
CVEs whose affected-version data names the rhoai/odh-trustyai-service-operator-rhel9 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-15467High· 8.1A flaw was found in the trustyai-service-operator's LMEvalJob controller
A flaw was found in the trustyai-service-operator's LMEvalJob controller. An authenticated user within the cluster can exploit this vulnerability by configuring a sidecar container to bypass existing security policies. This allows the us…
▾ TwilightRed Hat · rhoai/odh-trustyai-service-operator-rhel9EPSS 0.60%via NVD
CVE-2026-15581High· 8.0A flaw was found in the TrustyAI Service (TAS) deployment
A flaw was found in the TrustyAI Service (TAS) deployment. This vulnerability allows any pod on the cluster network to bypass authentication and directly access the TAS backend API. An attacker can exploit this to read, tamper with, or d…
▾ TwilightRed Hat · rhoai/odh-trustyai-service-operator-rhel9EPSS 0.42%via NVD