TROYANOSYVIRUS
Volver a CVEs

CVE-2026-2274

N/A

Descripcion

A SSRF and Arbitrary File Read vulnerability in AppSheet Core in Google AppSheet prior to 2025-11-23 allows an authenticated remote attacker to read sensitive local files and access internal network resources via crafted requests to the production cluster. This vulnerability was patched and no customer action is needed.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado2/19/2026
Ultima modificacion2/20/2026
Fuentenvd
Avistamientos honeypot0

Debilidades (CWE)

CWE-918

Referencias

https://discuss.google.dev/t/november-23-2025/332118(f45cbf4e-4146-4068-b7e1-655ffc2c548c)

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.