GCP-2026-056Critical

GCP-2026-056 — Published: 2026-08-26Description Description Severity Notes An Improper Input Validation vulnerability was discovered in the JDBC driver in…

Published
August 26, 2026
Last Modified
August 26, 2026

🔗 CVE IDs covered (1)

📋 Description

Published: 2026-08-26Description Description Severity Notes An Improper Input Validation vulnerability was discovered in the JDBC driver in BigQuery Data Transfer Service versions prior to May 1, 2026. What should I do? No customer action is required. This vulnerability was patched on May 1, 2026. What vulnerabilities are being addressed? An authenticated attacker could use crafted JDBC connection string parameters to achieve remote code execution in the connector container and escalate privileges in the tenant project. Critical CVE-2026-12717

🔗 References (1)