logo

CVE-2026-4810: Critical 9.3 RCE Flaw Hits Google’s AI Agent Development Kit

ID: da10a7ef-98b1-5c53-b628-4b8f766139de

STIX ID: report--da10a7ef-98b1-5c53-b628-4b8f766139de

Feed Name: securityonline.info

Threat Score
85/100

Date Published: 2026-04-14

Date Updated: 2026-04-23

Author: Ddos

...
...

A critical vulnerability (CVE-2026-4810, CVSS 9.3) in Google’s Agent Development Kit (ADK) enables unauthenticated code injection leading to remote code execution across multiple deployment platforms (Python OSS, Cloud Run, GKE) in affected versions; Google released fixes (1.28.1 and 2.0.0a2) and organizations are urged to update and redeploy ADK instances to fully remediate the risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.