A vulnerability was found in MyScale MyScaleDB up to 1.8.0. It has been declared as problematic. This vulnerability affects the function
SegmentId::getCacheKey in the library src/VectorIndex/Common/SegmentId.h. The manipulation results in insufficient verification of data authenticity.
This vulnerability is known as CVE-2026-13513. It is possible to launch the attack remotely. Furthermore, an exploit is available.
The pull request to fix this issue awaits acceptance.