CVE-2026-45832 - ChromaDB Authorization Bypass via V1 API
CVE ID :CVE-2026-45832 Published : June 12, 2026, 4:16 p.m. | 51 minutes ago Description :All V1 collection-level endpoints in ChromaDB's Python project pass None for the tenant and database to the authorization layer, allowing attackers to bypass authorization controls by using the V1...