{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/chroma-1.5.9/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:trychroma:chroma:1.5.9:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-85664"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Chroma (1.5.9)"],"_cs_severities":["low"],"_cs_tags":["denial-of-service","vulnerability","cve"],"_cs_type":"advisory","_cs_vendors":["Chroma"],"content_html":"\u003cp\u003eChroma version 1.5.9 contains a high-severity vulnerability (CVE-2026-85664) within its handling of Hierarchical Navigable Small World (HNSW) index parameters. The application fails to perform proper bounds validation on the 'max_neighbors', 'ef_construction', and 'ef_search' parameters when processing collection-create API requests. An unauthenticated attacker can exploit this flaw by sending crafted requests containing arbitrarily large integer values for these parameters. Upon processing, the server attempts to allocate excessive memory resources to support the requested index dimensions, leading to heap exhaustion and a denial-of-service condition during the subsequent index compaction phase. This vulnerability poses a significant risk to the stability of self-hosted Chroma instances, as it does not require prior authentication to trigger.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation results in an immediate service denial for the target Chroma instance. By repeatedly sending these malformed requests, an attacker can prevent the service from recovering, effectively rendering the vector database unavailable for legitimate application traffic. The impact is primarily local availability, affecting any dependent AI or data pipeline relying on the Chroma instance for storage and retrieval operations.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the identification and patching of Chroma instances running version 1.5.9. As the vendor releases security updates or patches addressing CVE-2026-85664, apply them to all internet-facing and internal Chroma deployments immediately. Until a patch is available, implement network-level access control lists (ACLs) or API gateway request validation to filter requests targeting the collection-create endpoint, ensuring that the integer values for HNSW index parameters fall within reasonable, documented operational limits.\u003c/p\u003e\n","date_modified":"2026-09-04T19:26:39Z","date_published":"2026-09-04T19:26:39Z","id":"https://feed.craftedsignal.io/briefs/2026-09-chroma-dos/","summary":"Chroma 1.5.9 is vulnerable to an unauthenticated denial-of-service attack due to insufficient bounds validation on HNSW index parameters during collection creation, allowing memory exhaustion.","title":"Denial of Service Vulnerability in Chroma 1.5.9 via HNSW Index Parameters","url":"https://feed.craftedsignal.io/briefs/2026-09-chroma-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - Chroma (1.5.9)","version":"https://jsonfeed.org/version/1.1"}