ChromaToast Exploit: Unpatched CVSS 10.0 Flaw Grants Pre-Auth RCE in ChromaDB Python Server
A critical authentication bypass vulnerability facilitating unauthenticated remote code execution (RCE) has been isolated within the ChromaDB architecture. The flaw, cataloged under the identifier CVE-2026-45829, has been assigned the maximum possible CVSS severity score...