A vulnerability has been found in yoanbernabeu grepai 0.35.0. This issue affects some unknown processing of the file indexer/chunker.go of the component Qdrant Backend. Such manipulation leads to use of weak hash. The attack may be performed from remote. Attacks of this nature are highly complex. The exploitability is assessed as difficult. The exploit has been disclosed to the public and may be used. The pull request to fix this issue awaits acceptance.
History

Mon, 08 Jun 2026 03:15:00 +0000

Type Values Removed Values Added
Description A vulnerability has been found in yoanbernabeu grepai 0.35.0. This issue affects some unknown processing of the file indexer/chunker.go of the component Qdrant Backend. Such manipulation leads to use of weak hash. The attack may be performed from remote. Attacks of this nature are highly complex. The exploitability is assessed as difficult. The exploit has been disclosed to the public and may be used. The pull request to fix this issue awaits acceptance.
Title yoanbernabeu grepai Qdrant Backend chunker.go weak hash
First Time appeared Yoanbernabeu
Yoanbernabeu grepai
Weaknesses CWE-327
CWE-328
CPEs cpe:2.3:a:yoanbernabeu:grepai:*:*:*:*:*:*:*:*
Vendors & Products Yoanbernabeu
Yoanbernabeu grepai
References
Metrics cvssV2_0

{'score': 3.6, 'vector': 'AV:N/AC:H/Au:S/C:N/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 4.2, 'vector': 'CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 4.2, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 2.3, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2026-06-08T02:15:09.333Z

Updated: 2026-06-08T02:15:09.333Z

Reserved: 2026-06-07T09:45:55.265Z

Link: CVE-2026-11479

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-06-08T03:16:20.190

Modified: 2026-06-08T03:16:20.190

Link: CVE-2026-11479

cve-icon Redhat

No data.