CVE-2025-69872: Red Hat Ai Inference Server

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write access to the cache directory can achieve arbitrary code execution when a victim application reads from the cache.

Affected products

  • Red Hat Red Hat Ai Inference Server
  • Red Hat Red Hat Enterprise Linux Ai Rhel Ai 3
  • Red Hat Red Hat Openshift Ai 3.3: before 1770754605 (fixed in 1770754605)
  • Red Hat Red Hat Openshift Ai Rhoai
  • Red Hat Red Hat Satellite 6.18: before 1782739344 (fixed in 1782739344)

Published 2026-02-11. Last modified 2026-07-15.