CVE-2026-8934 UNKNOWN

CVE-2026-8934

Published: 2026-06-22

Description

A Missing Authorization vulnerability in a GraphQL private API operation of the Google App Engine section of the Cloud Console allows an unauthenticated remote attacker to leak sensitive App Engine request logs from other projects using a specially crafted request. This vulnerability was patched on 7 April 2026, and no customer action is needed.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…