Metrics
Affected Vendors & Products
Thu, 04 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 04 Jun 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in milvus-io milvus up to 2.6.13. This vulnerability affects unknown code of the file internal/metastore/kv/rootcoord/kv_catalog.go of the component Grantee ID Hash Handler. The manipulation leads to use of weak hash. The attack needs to be performed locally. The attack's complexity is rated as high. It is stated that the exploitability is difficult. The exploit has been disclosed to the public and may be used. The identifier of the patch is 3d932f1c3e065351c4440c27abe1e6479752544d. Applying a patch is the recommended action to fix this issue. | |
| Title | milvus-io milvus Grantee ID Hash kv_catalog.go weak hash | |
| First Time appeared |
Milvus-io
Milvus-io milvus |
|
| Weaknesses | CWE-327 CWE-328 |
|
| CPEs | cpe:2.3:a:milvus-io:milvus:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Milvus-io
Milvus-io milvus |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-04T15:46:55.116Z
Reserved: 2026-06-04T05:41:43.203Z
Link: CVE-2026-10814
Updated: 2026-06-04T15:46:51.639Z
Status : Awaiting Analysis
Published: 2026-06-04T16:16:33.117
Modified: 2026-06-04T16:32:54.380
Link: CVE-2026-10814
No data.
OpenCVE Enrichment
Updated: 2026-06-04T17:00:15Z