Boletines de Vulnerabilidades

CVE-2026-19410

   
Software afectado GITHUB
 
An Incorrect Authorization vulnerability in GitHub Trigger Comment Control in Google Cloud Build prior to 2026-06-24 on Google Cloud Platform allows a remote attacker to execute unreviewed code in the build environment using webhook suppression.


This vulnerability was patched on 24 June 2026, and no customer action is needed.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-19410