← Back to browse · API

CVE-2026-2031

Severity
CRITICAL
CVSS
10.0
EPSS
0.00531
Risk score
40.19
CISA KEV
No
PoC
No
Published
2026-05-15
Modified
2026-05-15
First seen
2026-08-07
Aliases
EUVD-2026-30552, GHSA-5M89-9VMQ-75R8
Products
Google Cloud:Internal Integration Platform APIs 0 <2026-01-23
Sources
euvd EUVD-2026-30552

Description

An Improper Access Control vulnerability in several internal API endpoints for Google Cloud Application Integration prior to 2026-01-23 allows a remote, unauthenticated attacker to disclose sensitive internal information and execute arbitrary code using specially crafted HTTP requests to inadvertently exposed internal API endpoints.

References