CVE 2.3 LOW

yoanbernabeu grepai Qdrant Backend chunker.go weak hash_CVE-2026-11479

2.3 / 10
LOW
CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

Description

A vulnerability has been found in yoanbernabeu grepai 0.35.0. This issue affects some unknown processing of the file indexer/chunker.go of the component Qdrant Backend. Such manipulation leads to use of weak hash. The attack may be performed from remote. Attacks of this nature are highly complex. The exploitability is assessed as difficult. The exploit has been disclosed to the public and may be used. The pull request to fix this issue awaits acceptance.

Basic Information

ID CVE-2026-11479
Source VulDB
Published Jun 8, 2026 at 02:15

Affected Product

Vendor yoanbernabeu
Product grepai
Version 0.35.0
Affected Versions yoanbernabeu grepai 0.35.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.