CVE-2026-45829
EPSS 1% (62º percentile).
Vulnerabilità · 132 giorni fa
ChromaDB sta trattando gli identificatori di modello forniti dal client come input affidabile prima dell'auth, quindi le istanze esposte possono consegnare agli attacker accesso alla shell prima che venga eseguito qualsiasi controllo di login. Questo trasforma il percorso di selezione del modello in code execution, e patchare in seguito non annulla i secret che una richiesta ostile può leggere lungo il percorso.
EPSS 1% (62º percentile).
3 fonti che coprono questa storia
Unpatched ChromaDB flaw leaves servers open to remote code execution
The ChromaToast vulnerability can be exploited by forcing the ChromaDB API server to fetch and load maliciously crafted AI models before authentication is checked.
Max-severity flaw in ChromaDB for AI apps allows server hijacking
A max-severity vulnerability in the latest Python FastAPI version of the ChromaDB project allows unauthenticated attackers to run arbitrary code on exposed servers.
Unpatched ChromaDB Vulnerability Can Lead to Server Takeover
The security defect can be exploited remotely, without authentication, to execute arbitrary code and leak sensitive information.
Part of the PlainSec briefing for 2026-05-22