CVE-2026-23538
Feast Feast Feature Server, Red Hat OpenShift AI (RHOAI) 취약점
A vulnerability was identified in the Feast Feature Server's `/ws/chat` endpoint that allows remote attackers to establish persistent WebSocket connections without any authentication. By opening a large number of simultaneous connections, an attacker can exhaust server resources—such as memory, CPU, and file descriptors—leading to a complete denial of service for legitimate users.
- 대응 우선순위
- 점검
- CVSS
- 7.5
- EPSS
- 0.75% 백분위 51.3% · 2026.08.03 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.07.16