Technology · Google
Google Cloud Platform vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 29 vulnerabilities in Google Cloud Platform: 1 in the last 7 days and 18 in the last 90 days, 1 of them critical and 0 exploited in the wild. The most recent, CVE-2026-73513, was published on 21 September 2026.
- Last 7 days
- 1
- Last 90 days
- 18
- Critical, all time
- 1
- Exploited in the wild
- 0
Latest Google Cloud Platform vulnerabilities
- CVE-2026-73513: Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4…highCVSS 7.5EPSS 0.7%
- CVE-2026-15587: Google Security Operations SOAR privilege escalation via authentication headerhigh
- CVE-2026-65107: Slurm multiple vulnerabilities in Cluster Toolkithigh
- containerd CRI security context bypass in checkpoint restoreinfo
- CVE-2026-4644: A Missing Authorization vulnerability in HTTP Connector in Google Cloud Integration Connectors versions prior to 2025-12-11…highEPSS 0.4%
- Google GKE Multi-Cloud authorization bypass in cluster registration APIsinfo
- CVE-2026-12717: An Improper Input Validation vulnerability in CData JDBC driver integration in Google Cloud BigQuery Data Transfer Service…highEPSS 0.4%
- Next.js and libheif RCE in HEIF/AVIF image processinginfoCVSS 9.8
- CVE-2025-31938: Insufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(R)…highEPSS 0.1%
- CVE-2026-6726: An information leakage vulnerability was reported in the TCG TPM 2.0 reference code that could allow a local attacker with…highCVSS 7.9EPSS 0.2%
- CVE-2026-64561: Linux KVM x86 shadow MMU privilege escalationhighCVSS 8.8
- CVE-2026-59309: VMware vCenter authentication bypass in VMware Directory ServicecriticalCVSS 9.8
- CVE-2026-15810: Google Cloud Looker XSS leading to administrative account takeoverhighCVSS 8.7
- CVE-2026-12715: Google Cloud Firebase Studio missing authorization in GetSignedGcsUrl RPChighCVSS 8.5
- CVE-2026-14934: Google Cloud BigQuery and Dataform auth bypass in repository creationhighCVSS 9.4
- Google Cloud Developer Connect privilege escalationinfo
- CVE-2026-53359: Linux Kernel KVM shadow paging use-after-free in x86 MMUhighCVSS 7.8
- CVE-2026-50195: containerd image tag poisoning in CRI checkpoint importhighCVSS 3.1EPSS 0.3%
- Envoy Proxy QPACK decoding denial-of-service in HTTP/3info
- CVE-2026-47692: Envoy PROXY Protocol v2 request smuggling via TLV length mismatchhighCVSS 4.8
- CVE-2025-0982: Google Application Integration JavaScript RCE via Rhino enginehigh
- Google Cloud Build privilege escalation in Secret Managerinfo
- CVE-2026-8934: Google Cloud Console missing authorization in App Engine GraphQL APIhighCVSS 6.9
- Google Cloud Logging log sink hijacking via bucket recreationinfo
- CVE-2026-47774: Envoy Proxy denial of service via HTTP/2 HPACK amplificationhighCVSS 7.5EPSS 0.6%
Most severe Google Cloud Platform vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-59309: VMware vCenter authentication bypass in VMware Directory ServicecriticalCVSS 9.8
- CVE-2026-14934: Google Cloud BigQuery and Dataform auth bypass in repository creationhighCVSS 9.4
- CVE-2026-2264: Google Cloud Apigee SSRF in SetIntegrationRequest policyhighCVSS 9.2
- CVE-2026-64561: Linux KVM x86 shadow MMU privilege escalationhighCVSS 8.8
- CVE-2026-15810: Google Cloud Looker XSS leading to administrative account takeoverhighCVSS 8.7
- CVE-2026-12715: Google Cloud Firebase Studio missing authorization in GetSignedGcsUrl RPChighCVSS 8.5
- CVE-2026-6726: An information leakage vulnerability was reported in the TCG TPM 2.0 reference code that could allow a local attacker with…highCVSS 7.9EPSS 0.2%
- CVE-2026-46300: Linux Kernel out-of-bounds write in skbuff coalescinghighCVSS 7.8EPSS 0.1%
- CVE-2026-53359: Linux Kernel KVM shadow paging use-after-free in x86 MMUhighCVSS 7.8
- CVE-2026-34480: Apache Log4j Core invalid XML output in XmlLayouthighCVSS 7.5EPSS 1.2%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 3 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 3 | 0 | |
| 20 Jul 2026 | 1 | 0 | |
| 27 Jul 2026 | 1 | 1 | |
| 3 Aug 2026 | 1 | 0 | |
| 10 Aug 2026 | 2 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 2 | 0 | |
| 31 Aug 2026 | 2 | 0 | |
| 7 Sep 2026 | 2 | 0 | |
| 14 Sep 2026 | 1 | 0 | |
| 21 Sep 2026 | 1 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/google-cloud-platform.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Google Cloud Platform vulnerabilities", https://junglewise.ai/threats/technologies/google-cloud-platform, 27 September 2026.