CVE-2026-11481

A vulnerability was determined in yoanbernabeu grepai up to 0.35.0. The affected element is the function PostgresStore.LookupByContentHash of the file indexer/chunker.go of the component Postgres Embedding Cache. Executing a manipulation of the argument content_hash can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. The exploitability is described as difficult. The exploit has been publicly disclosed and may be utilized. The pull request to fix this issue awaits acceptance.
Configurations

No configuration.

History

08 Jun 2026, 03:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-08 03:16

Updated : 2026-06-17 10:14


NVD link : CVE-2026-11481

Mitre link : CVE-2026-11481

CVE.ORG link : CVE-2026-11481


JSON object : View

Products Affected

No product.

CWE
CWE-327

Use of a Broken or Risky Cryptographic Algorithm

CWE-328

Use of Weak Hash