Max-severity flaw in ChromaDB for AI apps allows server hijacking
… It enables retrieving semantically relevant documents during large-language model LLM inference. The flaw affects the codebase containing the vulnerable Python API server logic, so the PyPI package, which has nearly 14 million monthly downloads , is at risk when servers are accessible over HTTP. …