CVE Database
/

CVE-2026-2031

Back to search

CVE-2026-2031

Published: May 15, 2026

Modified: May 15, 2026

PUBLISHED

Description

An Improper Access Control vulnerability in several internal API endpoints for Google Cloud Application Integration prior to 2026-01-23 allows a remote, unauthenticated attacker to disclose sensitive internal information and execute arbitrary code using specially crafted HTTP requests to inadvertently exposed internal API endpoints.

VendorProductVersions

Google Cloud

Internal Integration Platform APIs

affected
0 - < 2026-01-23

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now