VDB
GCVE-110-OSM-2026-12073
GCVE-110-OSM-2026-12073
Advisory PublishedCVSS 5.4/10
This package does not carry any malicious payload yet, but uses exactly the same technique as the openaii, ollamaa and langgrap pypi packages. The intent of this campaign is to mislead LLM security tools with an embedded prompt that tricks the LLM into bypassing security scans. Then the .pth file downloads a second stage payload from an attacker-controlled url. This payload exfiltrates sensitive data (SSH keys, cloud credentials), ensures persistence and plants a cryptominer.
No malicious payload in this version
Weaknesses (CWE)
CWE-506Embedded Malicious Code
Risk Scores
CVSS 3.1
5.4/10
Medium · CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| unknown | chroma-client | all (affected) | — |
Aliases
Browse GCVE Records
369 records in the GCVE database · Updated September 14, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.