CyberRota Analysis
This vulnerability has an unknown severity rating. It may be remotely exploitable.
CVE
CVE-2026-8934
Severity
UNKNOWN
CVSS
N/A
EPSS
0.51%
Original NVD Description
A Missing Authorization vulnerability in a GraphQL private API operation of the Google App Engine section of the Cloud Console allows an unauthenticated remote attacker to leak sensitive App Engine request logs from other projects using a specially crafted request. This vulnerability was patched on 7 April 2026, and no customer action is needed.