CVE-2025-69872: Red Hat Ai Inference Server
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write access to the cache directory can achieve arbitrary code execution when a victim application reads from the cache.
Affected products
- Red Hat Red Hat Ai Inference Server
- Red Hat Red Hat Enterprise Linux Ai Rhel Ai 3
- Red Hat Red Hat Openshift Ai 3.3: before 1770754605 (fixed in 1770754605)
- Red Hat Red Hat Openshift Ai Rhoai
- Red Hat Red Hat Satellite 6.18: before 1782739344 (fixed in 1782739344)
Published 2026-02-11. Last modified 2026-07-15.