CVE-2026-15154
CVE-2026-15154 is a medium-severity vulnerability in Redhat Openshift Ai with a CVSS 3.x base score of 6.5. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-1333.
Key facts
- Severity: Medium (CVSS 3.x base score 6.5)
- EPSS exploit prediction: 0% (23rd percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-1333
- Affected product: Redhat Openshift Ai
- Published:
- Last modified:
Description
A flaw was found in `guardrails-detectors`, a component of Red Hat OpenShift AI. This vulnerability, known as Regular Expression Denial of Service (ReDoS), allows a remote attacker to provide specially crafted regular expressions to the public detection API. This can cause catastrophic backtracking, leading to a worker process consuming 100% CPU indefinitely and resulting in a denial of service for the entire guardrails-mediated LLM pipeline.
Frequently asked questions
- What is CVE-2026-15154?
- A flaw was found in `guardrails-detectors`, a component of Red Hat OpenShift AI. This vulnerability, known as Regular Expression Denial of Service (ReDoS), allows a remote attacker to provide specially crafted regular expressions to the public detection API. This can cause catastrophic backtracking, leading to a worker process consuming 100% CPU indefinitely and resulting in a denial of service for the entire guardrails-mediated LLM pipeline.
- How severe is CVE-2026-15154?
- CVE-2026-15154 has a CVSS 3.x base score of 6.5, rated medium severity. It is exploitable over an adjacent network with low attack complexity, requires no privileges and no user interaction. Impact on confidentiality is none, integrity none, and availability high.
- Is CVE-2026-15154 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 0% (23rd percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2026-15154?
- CVE-2026-15154 affects Redhat Openshift Ai. See the affected-products list for the exact vulnerable versions.
- How do I fix CVE-2026-15154?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2026-15154 published?
- CVE-2026-15154 was published on 2026-07-08 and last updated on 2026-08-11.
References
- https://access.redhat.com/errata/RHSA-2026:53261
- https://access.redhat.com/errata/RHSA-2026:53262
- https://access.redhat.com/errata/RHSA-2026:53263
- https://access.redhat.com/security/cve/CVE-2026-15154
- https://bugzilla.redhat.com/show_bug.cgi?id=2498188
Affected products (1)
- cpe:2.3:a:redhat:openshift_ai:-:*:*:*:*:*:*:*
More vulnerabilities in Redhat Openshift Ai
- CVE-2026-42271 — High (CVSS 8.8): LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.74.2 to before…
- CVE-2024-7557 — High (CVSS 8.8): A vulnerability was found in OpenShift AI that allows for authentication bypass and privilege escalation across models…
- CVE-2026-5483 — High (CVSS 8.5): A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the `odh-dashboard` component of Red…
- CVE-2025-12805 — High (CVSS 8.1): A flaw was found in Red Hat OpenShift AI (RHOAI) llama-stack-operator. This vulnerability allows unauthorized access to…
- CVE-2026-1462 — High (CVSS 7.8): A vulnerability in the `TFSMLayer` class of the `keras` package, version 3.13.0, allows attacker-controlled TensorFlow…
- CVE-2023-54365 — High (CVSS 7.5): Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling…
All CVEs affecting Redhat Openshift Ai →
Other CWE-1333 vulnerabilities
- CVE-2026-35458 — Critical (CVSS 9.8): Gotenberg is an API for converting document formats. In 8.29.1 and earlier, Gotenberg uses dlclark/regexp2 to compile…
- CVE-2023-29486 — Critical (CVSS 9.8): An issue was discovered in Heimdal Thor agent versions 3.4.2 and before 3.7.0 on Windows, allows attackers to bypass…
- CVE-2026-25547 — Critical (CVSS 9.2): @isaacs/brace-expansion is a hybrid CJS/ESM TypeScript fork of brace-expansion. Prior to version 5.0.1,…
- CVE-2023-29487 — Critical (CVSS 9.1): An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS,…
- CVE-2026-71190 — High (CVSS 8.7): In OpenStack Swift through 2.38.0, the proxy server Accept header parser contains a regular expression vulnerable to…
- CVE-2026-57584 — High (CVSS 8.7): Phalcon is a high-performance, full-stack PHP framework. Prior to 5.15.0, every Phalcon MVC application built with a…