Unpatched CVSS 10 Alert: ChromaDB Python Server Grants Pre-Auth RCE via Malicious Hugging Face Models

⚠️ CVE-Referenzen: CVE-2026-1603
The post Unpatched CVSS 10 Alert: ChromaDB Python Server Grants Pre-Auth RCE via Malicious Hugging Face Models appeared first on Daily CyberSecurity. Related posts: CVE-2026-1603: Remote Unauthenticated Attacker Can Steal Ivanti EPM Secrets Splunk Windows Flaws Expose Servers to System Takeover Bypassing the Bouncer: Apache Tomcat Patches SNI & Legacy Protocol Flaws
Quelle: securityonline.info