VDB

GCVE-110-OSM-2026-12073

GCVE-110-OSM-2026-12073
Advisory PublishedCVSS 5.4/10
Vulnetix · Advisory published September 13, 2026
This package does not carry any malicious payload yet, but uses exactly the same technique as the openaii, ollamaa and langgrap pypi packages. The intent of this campaign is to mislead LLM security tools with an embedded prompt that tricks the LLM into bypassing security scans. Then the .pth file downloads a second stage payload from an attacker-controlled url. This payload exfiltrates sensitive data (SSH keys, cloud credentials), ensures persistence and plants a cryptominer. No malicious payload in this version

Weaknesses (CWE)

CWE-506Embedded Malicious Code

Risk Scores

CVSS 3.1
5.4/10
Medium · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

Affected Products

VendorProductVersionsPlatforms
unknownchroma-clientall (affected)

References

advisory
vendor

Browse GCVE Records

369 records in the GCVE database · Updated September 14, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›