CVE-2026-11481 Details
Description
A vulnerability was determined in yoanbernabeu grepai up to 0.35.0. The affected element is the function PostgresStore.LookupByContentHash of the file indexer/chunker.go of the component Postgres Embedding Cache. Executing a manipulation of the argument content_hash can lead to use of weak hash. The attack needs to be launched locally. The attack requires a high level of complexity. The exploitability is described as difficult. The exploit has been publicly disclosed and may be utilized. The pull request to fix this issue awaits acceptance.
A vulnerability exists in Grepai versions up to 0.35.0, specifically within the Postgres embedding cache management. The issue arises in the 'LookupByContentHash' function, where the cache lookup is performed using only the content hash, without considering the project ID. This flaw can lead to the unintended reuse of embedding vectors across different projects that share the same Postgres database, potentially causing a loss of index integrity and corruption of search quality. The vulnerability requires local exploitation and is characterized by a high complexity.
A pull request to fix this vulnerability has been submitted and is awaiting acceptance.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jun 8, 2026CISA-ADP
Assessed Jun 8, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/yoanbernabeu/grepai/ | [email protected] | ProductSource CodeVendor |
| https://github.com/yoanbernabeu/grepai/issues/249 | [email protected] | ExploitIssue TrackingTechnical DescriptionVendor |
| https://github.com/yoanbernabeu/grepai/pull/250 | [email protected] | Issue TrackingVendor |
| https://vuldb.com/cve/CVE-2026-11481 | [email protected] | AdvisoryPermission Required |
| https://vuldb.com/submit/833997 | [email protected] | Issue TrackingPermission Required |
| https://vuldb.com/vuln/369101 | [email protected] | BundlePermission Required |
| https://vuldb.com/vuln/369101/cti | [email protected] | AdvisoryPermission Required |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-327 | Use of a Broken or Risky Cryptographic Algorithm | [email protected] |
| CWE-328 | Use of Weak Hash | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| yoanbernabeu grepai | <= 0.35.0 (semver) |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 23, 2026 | CVE Translated | [email protected] |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 8, 2026 | New CVE Received | [email protected] |
Volerion