NVD Vulnerability Detail
Search Exploit, PoC
CVE-2026-8934
Summary

A Missing Authorization vulnerability in a GraphQL private API operation of the Google App Engine section of the Cloud Console allows an unauthenticated remote attacker to leak sensitive App Engine request logs from other projects using a specially crafted request.

This vulnerability was patched on 7 April 2026, and no customer action is needed.

Publication Date June 23, 2026, 1:16 a.m.
Registration Date June 27, 2026, 4:10 a.m.
Last Update June 23, 2026, 5:18 a.m.
Related information, measures and tools
Common Vulnerabilities List